Candidate: CVE-2013-6409 PublicDate: 2013-12-07 20:55:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-6409 https://bitbucket.org/jwilk/adequate/commits/94e5fc5d810057bffb673501ed809f7c2dabd9ee Description: Debian adequate before 0.8.1, when run by root with the --user option, allows local users to hijack the tty and possibly gain privileges via the TIOCSTI ioctl. Ubuntu-Description: Notes: Bugs: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=730691 Priority: medium Discovered-by: Assigned-to: CVSS: Patches_adequate: upstream_adequate: released (0.8.1) lucid_adequate: DNE precise_adequate: DNE quantal_adequate: DNE raring_adequate: ignored (reached end-of-life) saucy_adequate: ignored (reached end-of-life) trusty_adequate: not-affected (0.9.1ubuntu1) trusty/esm_adequate: DNE (trusty was not-affected [0.9.1ubuntu1]) devel_adequate: not-affected (0.9.1ubuntu1)