|
wmtv local root Vulnerability
wmtv, a video4linux TV player for windowmaker, is installed setuid root. This program can run an external command when you double click on the TV window, with the command specified by the -e command line option. Since the program is suid root this command is run with root privileges, allowing for extremely trivial exploit. Debian GNU/Linux 2.2 systems which have wmtv installed are vulnerable to this, other distributionts may suffer from it as well. |
|
|
Privacy Statement |