CVE-2008-1671
start_kdeinit in KDE 3.5.5 through 3.5.9, when installed setuid root, allows local users to cause a denial of service and possibly execute arbitrary code via "user-influenceable input" (probably command-line arguments) that cause start_kdeinit to send SIGUSR1 signals to other processes.
- Kde
- = 3.5.5, 3.5.6, 3.5.7, 3.5.8, 3.5.9
- Fix
- Available
- CVSS 2.0
- 4.6 MEDIUM
- EPSS
- 0.6% (47th percentile)
- Weakness
- CWE-16
- NVD status
- Modified
- Published
- 2008-04-28
CVE-2008-1671 at NVD
1 known exploit for CVE-2008-1671
Proof-of-concept code and exploit modules indexed by Sploitus