Record summary

CVE-2011-2777 has a selected CVSS score of 4.4; EIP currently links 1 catalogued exploit.

Description

samples/powerbtn/powerbtn.sh in acpid (aka acpid2) 2.0.16 and earlier uses the pidof program incorrectly, which allows local users to gain privileges by running a program with the name kded4 and a DBUS_SESSION_BUS_ADDRESS environment variable containing commands.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
1

Proofs of concept

1

Catalogued exploits

ExploitDBAcpid 1:2.0.10-1ubuntu2 (Ubuntu 11.04/11.10) - Boundary Crossing Privilege EscalationExploitDB exploitby otrNot analyzed1 file
ExploitDB

PoC details

References

2