CVE-2000-0918

kvt in KDE 1.1.2 - Local Format String Vulnerability via DISPLAY Environment Variable

Title source: llm
STIX 2.1

Description

Format string vulnerability in kvt in KDE 1.1.2 may allow local users to execute arbitrary commands via a DISPLAY environmental variable that contains formatting characters.

References (2)

Core 2
Core References
Patch mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/83914
Patch, Vendor Advisory vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/1700

Scores

EPSS 0.0006
EPSS Percentile 19.0%

Details

Status published
Products (1)
kde/kvt 1.1.2
Published Dec 19, 2000
Tracked Since Feb 18, 2026