The init script in kbd, possibly 1.14.1 and earlier, allows local users to overwrite arbitrary files via a symlink attack on /dev/shm/defkeymap.map.
2014-04-16T18:37:09.083
2025-04-12T10:46:40.837
Deferred
CVSSv2: 6.3 (MEDIUM)
AV:L/AC:M/Au:N/C:N/I:C/A:C
3.4
9.2
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | kbd-project | kbd | ≤ 1.14.1 | Yes |
Application | kbd-project | kbd | 0.99 | Yes |
Application | kbd-project | kbd | 1.01 | Yes |
Application | kbd-project | kbd | 1.03 | Yes |
Application | kbd-project | kbd | 1.04 | Yes |
Application | kbd-project | kbd | 1.05 | Yes |
Application | kbd-project | kbd | 1.06 | Yes |
Application | kbd-project | kbd | 1.08 | Yes |
Application | kbd-project | kbd | 1.10 | Yes |
Application | kbd-project | kbd | 1.11 | Yes |
Application | kbd-project | kbd | 1.12 | Yes |
Application | kbd-project | kbd | 1.13 | Yes |
Application | kbd-project | kbd | 1.14 | Yes |
Operating System | opensuse | opensuse | 11.2 | Yes |
Operating System | opensuse | opensuse | 11.3 | Yes |