Lucene search

K
gentooGentoo FoundationGLSA-200606-22
HistoryJun 22, 2006 - 12:00 a.m.

aRts: Privilege escalation

2006-06-2200:00:00
Gentoo Foundation
security.gentoo.org
21

CVSS2

6

Attack Vector

LOCAL

Attack Complexity

HIGH

Authentication

SINGLE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:H/Au:S/C:C/I:C/A:C

CVSS3

7.8

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

EPSS

0.001

Percentile

25.3%

Background

aRts is a real time modular system for synthesizing audio used by KDE. artswrapper is a helper application used to start the aRts daemon.

Description

artswrapper fails to properly check whether it can drop privileges accordingly if setuid() fails due to a user exceeding assigned resource limits.

Impact

Local attackers could exploit this vulnerability to execute arbitrary code with elevated privileges. Note that the aRts package provided by Gentoo is only vulnerable if the artswrappersuid USE-flag is enabled.

Workaround

There is no known workaround at this time.

Resolution

All aRts users should upgrade to the latest version:

 # emerge --sync
 # emerge --ask --oneshot --verbose kde-base/arts
OSVersionArchitecturePackageVersionFilename
Gentooanyallkde-base/arts< 3.5.2-r1UNKNOWN

CVSS2

6

Attack Vector

LOCAL

Attack Complexity

HIGH

Authentication

SINGLE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:H/Au:S/C:C/I:C/A:C

CVSS3

7.8

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

EPSS

0.001

Percentile

25.3%