PublicDate: 2008-04-28 17:05:00 UTC Candidate: CVE-2008-1671 References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-1671 https://ubuntu.com/security/notices/USN-608-1 Description: start_kdeinit in KDE 3.5.5 through 3.5.9, when installed setuid root, allows local users to cause a denial of service and possibly execute arbitrary code via "user-influenceable input" (probably command-line arguments) that cause start_kdeinit to send SIGUSR1 signals to other processes. Ubuntu-Description: Notes: Bugs: Priority: low Discovered-by: Assigned-to: CVSS: Patches_kdelibs: upstream_kdelibs: needs-triage dapper_kdelibs: not-affected feisty_kdelibs: released (4:3.5.6-0ubuntu14.3) gutsy_kdelibs: released (4:3.5.8-0ubuntu3.4) hardy_kdelibs: released (4:3.5.9-0ubuntu7.1) devel_kdelibs: released (4:3.5.9.dfsg.1-4)