Plash permits sandboxed processes to open /dev/tty, which allows local users to escape sandbox restrictions and execute arbitrary commands by sending characters to a shell process on the same termimal via the TIOCSTI ioctl.
References
Configurations
History
No history.
Information
Published : 2007-03-10 22:19
Updated : 2011-03-08 02:52
NVD link : CVE-2007-1400
Mitre link : CVE-2007-1400
CVE.ORG link : CVE-2007-1400
JSON object : View
Products Affected
plesh
- plesh
CWE