Attacker Value
Unknown
(0 users assessed)
Exploitability
Unknown
(0 users assessed)
User Interaction
Unknown
Privileges Required
Unknown
Attack Vector
Unknown
0

CVE-2003-0690

Disclosure Date: October 06, 2003
Add MITRE ATT&CK tactics and techniques that apply to this CVE.

Description

KDM in KDE 3.1.3 and earlier does not verify whether the pam_setcred function call succeeds, which may allow attackers to gain root privileges by triggering error conditions within PAM modules, as demonstrated in certain configurations of the MIT pam_krb5 module.

Add Assessment

No one has assessed this topic. Be the first to add your voice to the community.

Technical Analysis