Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2005-0205

KPPP 2.1.2 in KDE 3.1.5 and earlier, when setuid root without certain wrappers, does not properly close a privileged file descriptor for a domain socket, which allows local users to read and write to /etc/hosts and /etc/resolv.conf and gain control over DNS name resolution by opening a number of file descriptors before executing kppp.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 24.1%
CVSS Severity
CVSS v2 Score 4.6
Products affected by CVE-2005-0205
  • Bernd Wuebben » Kppp » Version: 2.1.2
    cpe:2.3:o:bernd_wuebben:kppp:2.1.2
  • Kde » Kde » Version: 3.1
    cpe:2.3:o:kde:kde:3.1
  • Kde » Kde » Version: 3.1.1
    cpe:2.3:o:kde:kde:3.1.1
  • Kde » Kde » Version: 3.1.2
    cpe:2.3:o:kde:kde:3.1.2
  • Kde » Kde » Version: 3.1.3
    cpe:2.3:o:kde:kde:3.1.3
  • Kde » Kde » Version: 3.1.4
    cpe:2.3:o:kde:kde:3.1.4
  • Kde » Kde » Version: 3.1.5
    cpe:2.3:o:kde:kde:3.1.5


Contact Us

Shodan ® - All rights reserved