July 8, 2002

Potential local root exploit in artswrapper

Dre writes: "A potential local root exploit affecting all versions of 'artswrapper' in KDE, installed suid "root" was posted late Sunday to some of the well-known security websites. A patch was made available almost immediately, and new packages are being built. In the meantime, it is strongly recommended that system administrators unset the setuid bit on artswrapper (e.g., 'chmod ug-s artswrapper'). Additional information is available on the dot and the KDE 3.0.2 Info Page."


  • Security
