CVE-2011-0460

The init script in kbd, possibly 1.14.1 and earlier, allows local users to overwrite arbitrary files via a symlink attack on /dev/shm/defkeymap.map.
Link Following
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
6.3 UNKNOWN
LOCAL
MEDIUM
AV:L/AC:M/Au:N/C:N/I:C/A:C
Base Score
CVSS 3.x
EPSS Score
Percentile: 9%
Affected Products (NVD)
VendorProductVersion
kbd-projectkbd
𝑥
≤ 1.14.1
kbd-projectkbd
0.99
kbd-projectkbd
1.01
kbd-projectkbd
1.03
kbd-projectkbd
1.04
kbd-projectkbd
1.05
kbd-projectkbd
1.06
kbd-projectkbd
1.08
kbd-projectkbd
1.10
kbd-projectkbd
1.11
kbd-projectkbd
1.12
kbd-projectkbd
1.13
kbd-projectkbd
1.14
opensuseopensuse
11.2
opensuseopensuse
11.3
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
kbd
bookworm
2.5.1-1
fixed
bullseye
2.3.0-3
fixed
sid
2.6.4-3
fixed
trixie
2.6.4-3
fixed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
kbd
hardy
ignored
lucid
not-affected
natty
not-affected
oneiric
not-affected
precise
not-affected
quantal
not-affected
raring
not-affected
openSUSE logo
openSUSE / SLES Releases
openSUSE Product
Release
kbd
suse enterprise desktop 15
2.0.4-6.11
fixed
suse enterprise desktop 15 SP1
2.0.4-8.3.1
fixed
suse enterprise sap 12 SP5
2.0.4-8.10.2
fixed
suse enterprise sap 15
2.0.4-6.11
fixed
suse enterprise sap 15 SP1
2.0.4-8.3.1
fixed
suse enterprise server 12 SP4
2.0.4-8.10.2
fixed
suse enterprise server 12 SP5
2.0.4-8.10.2
fixed
suse enterprise server 15
2.0.4-6.11
fixed
suse enterprise server 15 SP1
2.0.4-8.3.1
fixed
kbd-legacy
suse enterprise desktop 15
2.0.4-6.11
fixed
suse enterprise desktop 15 SP1
2.0.4-8.3.1
fixed
suse enterprise sap 12 SP5
2.0.4-8.10.2
fixed
suse enterprise sap 15
2.0.4-6.11
fixed
suse enterprise sap 15 SP1
2.0.4-8.3.1
fixed
suse enterprise server 12 SP4
2.0.4-8.10.2
fixed
suse enterprise server 12 SP5
2.0.4-8.10.2
fixed
suse enterprise server 15
2.0.4-6.11
fixed
suse enterprise server 15 SP1
2.0.4-8.3.1
fixed