CVE-2011-0460

kbd < 1.14.1 - Arbitrary File Overwrite via Symlink Attack on /dev/shm/defkeymap.map

Title source: llm
STIX 2.1

Description

The init script in kbd, possibly 1.14.1 and earlier, allows local users to overwrite arbitrary files via a symlink attack on /dev/shm/defkeymap.map.

References (2)

Core 2
Core References
Mailing List vendor-advisory x_refsource_suse
http://lists.opensuse.org/opensuse-updates/2011-04/msg00053.html
Issue Tracking x_refsource_confirm
https://bugzilla.novell.com/show_bug.cgi?id=663898

Scores

EPSS 0.0034
EPSS Percentile 25.8%

Details

CWE
CWE-59
Status published
Products (15)
kbd-project/kbd 0.99
kbd-project/kbd 1.01
kbd-project/kbd 1.03
kbd-project/kbd 1.04
kbd-project/kbd 1.05
kbd-project/kbd 1.06
kbd-project/kbd 1.08
kbd-project/kbd 1.10
kbd-project/kbd 1.11
kbd-project/kbd 1.12
... and 5 more
Published Apr 16, 2014
Tracked Since Feb 18, 2026