CVE-2011-2922
19.11.2019, 19:15
ktsuss versions 1.4 and prior spawns the GTK interface to run as root. This can allow a local attacker to escalate privileges to root and use the "GTK_MODULES" environment variable to possibly execute arbitrary code.Enginsight
| Vendor | Product | Version |
|---|---|---|
| ktsuss_project | ktsuss | 𝑥 ≤ 1.4 |
𝑥
= Vulnerable software versions
Ubuntu Releases
Common Weakness Enumeration
References