CVE
- Id
- 13700
- CVE No.
- CVE-2005-2494
- Status
- Candidate
- Description
- kcheckpass in KDE 3.2.0 up to 3.4.2 allows local users to gain root access via a symlink attack on lock files.
- Phase
- Assigned (20050808)
- Votes
- None (candidate not yet proposed)
- Comments
Related CVE References
Id | CVE Id | CVE No. | Reference | Actions |
---|---|---|---|---|
99929 | 13700 | CVE-2005-2494 | BUGTRAQ:20050907 [ Suresec Advisories ] - Kcheckpass file creation vulnerability | View |
99930 | 13700 | CVE-2005-2494 | URL:http://marc.info/?l=bugtraq&m=112611555928169&w=2 | View |
99931 | 13700 | CVE-2005-2494 | MISC:http://www.suresec.org/advisories/adv6.pdf | View |
99932 | 13700 | CVE-2005-2494 | BUGTRAQ:20050905 [KDE Security Advisory] kcheckpass local root vulnerability | View |
99933 | 13700 | CVE-2005-2494 | URL:http://marc.info/?l=bugtraq&m=112603999215453&w=2 | View |
99934 | 13700 | CVE-2005-2494 | CONFIRM:http://www.kde.org/info/security/advisory-20050905-1.txt | View |
99935 | 13700 | CVE-2005-2494 | MISC:ftp://ftp.kde.org/pub/kde/security_patches/post-3.4.2-kdebase-kcheckpass.diff | View |
99936 | 13700 | CVE-2005-2494 | DEBIAN:DSA-815 | View |
99937 | 13700 | CVE-2005-2494 | URL:http://www.debian.org/security/2005/dsa-815 | View |
99938 | 13700 | CVE-2005-2494 | MANDRAKE:MDKSA-2005:160 | View |
99939 | 13700 | CVE-2005-2494 | URL:http://www.mandriva.com/security/advisories?name=MDKSA-2005:160 | View |
99940 | 13700 | CVE-2005-2494 | REDHAT:RHSA-2006:0582 | View |
99941 | 13700 | CVE-2005-2494 | URL:http://www.redhat.com/support/errata/RHSA-2006-0582.html | View |
99942 | 13700 | CVE-2005-2494 | UBUNTU:USN-176-1 | View |
99943 | 13700 | CVE-2005-2494 | URL:http://www.ubuntu.com/usn/usn-176-1 | View |
99944 | 13700 | CVE-2005-2494 | BID:14736 | View |
99945 | 13700 | CVE-2005-2494 | URL:http://www.securityfocus.com/bid/14736 | View |
99946 | 13700 | CVE-2005-2494 | OVAL:oval:org.mitre.oval:def:9388 | View |
99947 | 13700 | CVE-2005-2494 | URL:http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:9388 | View |
99948 | 13700 | CVE-2005-2494 | SECUNIA:16692 | View |
99949 | 13700 | CVE-2005-2494 | URL:http://secunia.com/advisories/16692 | View |
99950 | 13700 | CVE-2005-2494 | SECUNIA:18139 | View |
99951 | 13700 | CVE-2005-2494 | URL:http://secunia.com/advisories/18139 | View |
99952 | 13700 | CVE-2005-2494 | SECUNIA:21481 | View |
Related JVN
Id | JVN No. | Title | Summary | CVE No. | CVE Id | CVSS_v2 | CVSS_v3 | JVN URL | Actions |
---|---|---|---|---|---|---|---|---|---|
62305 | JVNDB-2005-000507 | NTP のグループ名における不適切な権限付与の脆弱性 | NTP において、グループ名を gid (数値) でなく文字列で指定して ntpd デーモンを起動させる場合、指定したグループが使用されずユーザが所属するグループが付与される脆弱性が存在します。 | CVE-2005-2496 | 13700 | 4.6 | http://jvndb.jvn.jp/ja/contents/2005/JVNDB-2005-000507.html | View |