CVE
- Id
- 3242
- CVE No.
- CVE-2001-0424
- Status
- Candidate
- Description
- BubbleMon 1.31 does not properly drop group privileges before executing programs, which allows local users to execute arbitrary commands with the kmem group id.
- Phase
- Proposed (20010524)
- Votes
- MODIFY(1) Frech | NOOP(3) Cole, Wall, Ziese
- Comments
- Frech> XF:bubblemon-elevate-privileges(6378)