CVE-2007-1400

Plash permits sandboxed processes to open /dev/tty, which allows local users to escape sandbox restrictions and execute arbitrary commands by sending characters to a shell process on the same termimal via the TIOCSTI ioctl.
Configurations

Configuration 1

cpe:2.3:a:plesh:plesh:*:*:*:*:*:*:*:*

Information

Published : 2007-03-10 10:19

Updated : 2011-03-08 02:52


NVD link : CVE-2007-1400

Mitre link : CVE-2007-1400

Products Affected
No products.
CWE
CWE-782

Exposed IOCTL with Insufficient Access Control