First published: Sat Feb 03 2007(Updated: )
Smb4K before 0.8.0 allow local users, when present on the Smb4K sudoers list, to kill arbitrary processes, related to a "design issue with smb4k_kill."
Credit: security@ubuntu.com
Affected Software | Affected Version | How to fix |
---|---|---|
Smb4K | =0.7 | |
Smb4K | =0.4 | |
Smb4K | =0.6 | |
Smb4K | =0.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-0474 is categorized as a vulnerability that allows local users to kill arbitrary processes, indicating a significant security risk.
To address CVE-2007-0474, upgrade Smb4K to version 0.8.0 or later.
Users of Smb4K versions 0.4, 0.5, 0.6, and 0.7 are affected by CVE-2007-0474.
An attacker with local access can exploit CVE-2007-0474 to terminate processes they shouldn’t have control over.
Yes, being included in the Smb4K sudoers list increases risk related to CVE-2007-0474.