This page aggregates publicly disclosed CVE and security risk information related to ktsuss_project, with CVSS, EPSS, publication dates, and vulnerability intelligence data to help assess potential risk and remediation priority.
| CVE | Summary | Source | Max CVSS | EPSS % | Published | Updated |
|---|---|---|---|---|---|---|
| CVE-2011-2922 | ktsuss versions 1.4 and prior spawns the GTK interface to run as root. This can allow a local attacker to escalate privileges to root and use the "GTK_MODULES" environment variable to possibly execute arbitrary code. | [email protected] | 7.8 | 0.09% | 2019-11-19 | 2024-11-21 |
| CVE-2011-2921 | ktsuss versions 1.4 and prior has the uid set to root and does not drop privileges prior to executing user specified commands, which can result in command execution with root privileges. | [email protected] | 9.8 | 72.98% | 2019-11-19 | 2024-11-21 |