Fwd: Re: LOCAL ROOT EXPLOIT - SUPPORT FULL-DISCLOSURE - LOCAL ROOT EXPLOIT

Adrian Schroeter adrian at suse.de
Mon Jul 8 06:41:51 BST 2002


On Sun, 7 Jul 2002, Waldo Bastian wrote:
> My first impression is that the affected code doesn't run with root privs at
> all, the only thing that could be exploited are the real-time privs IMO (I
> guess that allows for a local DOS)

Yes, root-permissions are dropped before the sig11 happened. It is not a
security problem, George said the same on IRC yesterday.


bye
adrian

**********************************************************************
Adrian Schroeter
SuSE AG, Deutschherrnstr. 15-19, 90429 Nuernberg, Germany
email: adrian at suse.de   (149 mails already received today.)



More information about the kde-multimedia mailing list