CVE-2008-0162
https://notcve.org/view.php?id=CVE-2008-0162
misc.c in splitvt 1.6.6 and earlier does not drop group privileges before executing xprop, which allows local users to gain privileges. misc.c in splitvt 1.6.6 y anteriores no borra los privilegios de grupo antes de ejecutar xprop, lo que permite a usuarios locales obtener privilegios. • http://secunia.com/advisories/29064 http://secunia.com/advisories/29080 http://secunia.com/advisories/29190 http://security.gentoo.org/glsa/glsa-200803-05.xml http://www.debian.org/security/2008/dsa-1500 http://www.securityfocus.com/bid/27936 • CWE-264: Permissions, Privileges, and Access Controls •
CVE-2001-0111 – Debian 2.2 - splitvt Format String
https://notcve.org/view.php?id=CVE-2001-0111
Format string vulnerability in splitvt before 1.6.5 allows local users to execute arbitrary commands via the -rcfile command line argument. • https://www.exploit-db.com/exploits/20556 http://marc.info/?l=bugtraq&m=97958269320974&w=2 http://www.debian.org/security/2001/dsa-014 http://www.securityfocus.com/bid/2210 https://exchange.xforce.ibmcloud.com/vulnerabilities/5948 •
CVE-2001-0112 – splitvt < 1.6.5 - Local Overflow
https://notcve.org/view.php?id=CVE-2001-0112
Multiple buffer overflows in splitvt before 1.6.5 allow local users to execute arbitrary commands. • https://www.exploit-db.com/exploits/260 http://marc.info/?l=bugtraq&m=97958269320974&w=2 http://www.debian.org/security/2001/dsa-014 http://www.securityfocus.com/bid/2210 •