>> KDE aRts "artswrapper" Helper Application Local Privilege Escalation Vulnerability
Title : KDE aRts "artswrapper" Helper Application Local Privilege Escalation Vulnerability VUPEN ID : VUPEN/ADV-2006-2357 CVE ID : CVE-2006-2916
Rated as : Moderate Risk
Remotely Exploitable : No Locally Exploitable : Yes Release Date : 2006-06-16
Technical Description
A vulnerability has been identified in aRts, which could be exploited by local attackers to obtain elevated privileges. This flaw is due to an error in the "artswrapper" helper application that does not properly validate user privileges before running the aRts daemon, which could be exploited by malicious users to start the daemon with root privileges.