Vulnerabilities > Synaesthesia

DATE CVE VULNERABILITY TITLE RISK
2005-05-02 CVE-2005-0070 Local File Disclosure vulnerability in Synaesthesia
Synaesthesia 2.1 and earlier, and possibly other versions, when installed setuid root, does not drop privileges before processing configuration and mixer files, which allows local users to read arbitrary files.
local
low complexity
synaesthesia
7.2
2004-03-29 CVE-2004-0160 Unspecified vulnerability in Synaesthesia
Synaesthesia 2.2 and earlier allows local users to execute arbitrary code via a symlink attack on the configuration file.
local
low complexity
synaesthesia
7.2