Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2006-2916
Description:artswrapper in aRts, when running setuid root on Linux 2.6.0 or later versions, does not check the return value of the setuid function call, which allows local users to gain root privileges by causing setuid to fail, which prevents artsd from dropping privileges.
Test IDs: 1.3.6.1.4.1.25623.1.0.57034   1.3.6.1.4.1.25623.1.0.56996   1.3.6.1.4.1.25623.1.0.57005  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2006-2916
BugTraq ID: 18429
http://www.securityfocus.com/bid/18429
BugTraq ID: 23697
http://www.securityfocus.com/bid/23697
Bugtraq: 20060615 rPSA-2006-0105-1 arts (Google Search)
http://www.securityfocus.com/archive/1/437362/100/0/threaded
http://www.gentoo.org/security/en/glsa/glsa-200606-22.xml
http://security.gentoo.org/glsa/glsa-200704-22.xml
http://www.mandriva.com/security/advisories?name=MDKSA-2006:107
http://mail.gnome.org/archives/beast/2006-December/msg00025.html
http://www.osvdb.org/26506
http://securitytracker.com/id?1016298
http://secunia.com/advisories/20677
http://secunia.com/advisories/20786
http://secunia.com/advisories/20827
http://secunia.com/advisories/20868
http://secunia.com/advisories/20899
http://secunia.com/advisories/25032
http://secunia.com/advisories/25059
http://slackware.com/security/viewer.php?l=slackware-security&y=2006&m=slackware-security.468256
SuSE Security Announcement: SUSE-SR:2006:015 (Google Search)
http://www.novell.com/linux/security/advisories/2006_38_security.html
http://www.vupen.com/english/advisories/2006/2357
http://www.vupen.com/english/advisories/2007/0409
XForce ISS Database: arts-artwrapper-privilege-escalation(27221)
https://exchange.xforce.ibmcloud.com/vulnerabilities/27221




© 1998-2025 E-Soft Inc. All rights reserved.