Fwd: Re: LOCAL ROOT EXPLOIT - SUPPORT FULL-DISCLOSURE - LOCAL ROOT EXPLOIT

Waldo Bastian bastian at kde.org
Mon Jul 8 00:07:41 BST 2002


My first impression is that the affected code doesn't run with root privs at 
all, the only thing that could be exploited are the real-time privs IMO (I 
guess that allows for a local DOS)

Affected versions: All versions since KDE 2.2.

Cheers,
Waldo

On Sunday 07 July 2002 03:51 pm, Andreas Pour wrote:
> Hi,
>
> What kind of patch is this?  Looks like a binary file?
>
> What version of KDE is affected?
>
> What are the plans - dates, e.g. - for announcing the exploit and having
> patched packages avaialable?
-- 
bastian at kde.org  |   SuSE Labs KDE Developer  |  bastian at suse.com





More information about the kde-core-devel mailing list