Vulnerabilities > CVE-2004-0151 - Unspecified vulnerability in Xintercepttalk Xitalk 1.1.11
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN xintercepttalk
nessus
Summary
Unknown vulnerability in xitalk 1.1.11 and earlier allows local users to execute arbitrary commands.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Nessus
NASL family | Debian Local Security Checks |
NASL id | DEBIAN_DSA-462.NASL |
description | Steve Kemp from the Debian Security Audit Project discovered a problem in xitalk, a talk intercept utility for the X Window System. A local user can exploit this problem and execute arbitrary commands under the GID utmp. This could be used by an attacker to remove traces from the utmp file. |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 15299 |
published | 2004-09-29 |
reporter | This script is Copyright (C) 2004-2019 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/15299 |
title | Debian DSA-462-1 : xitalk - missing privilege release |
code |
|
References
- http://secunia.com/advisories/11114/
- http://secunia.com/advisories/11114/
- http://shellcode.org/Advisories/XITALK.txt
- http://shellcode.org/Advisories/XITALK.txt
- http://www.debian.org/security/2004/dsa-462
- http://www.debian.org/security/2004/dsa-462
- http://www.securityfocus.com/bid/9851
- http://www.securityfocus.com/bid/9851
- https://exchange.xforce.ibmcloud.com/vulnerabilities/15456
- https://exchange.xforce.ibmcloud.com/vulnerabilities/15456