← Back

Tedfelix

tedfelix

3 CVEs • 2 products

Products (2)

Click to collapse
Toggle
Acpid2
acpid2
Acpid
acpid

CVEs (3)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Tedfelix
1Acpid2
Apr 29, 2026
Aug 29, 2012
N/A· v4
N/A· v3
4.6 MEDIUM· v2
event.c in acpid (aka acpid2) before 2.0.11 does not have an appropriate umask setting during execution of event-handler scripts, which might allow local users to (1) perform write operations within directories created b...Show more
event.c in acpid (aka acpid2) before 2.0.11 does not have an appropriate umask setting during execution of event-handler scripts, which might allow local users to (1) perform write operations within directories created by a script, or (2) read files created by a script, via standard filesystem system calls.Show less
1Tedfelix
1Acpid2
Apr 29, 2026
Aug 29, 2012
N/A· v4
N/A· v3
4.4 MEDIUM· v2
samples/powerbtn/powerbtn.sh in acpid (aka acpid2) 2.0.16 and earlier uses the pidof program incorrectly, which allows local users to gain privileges by running a program with the name kded4 and a DBUS_SESSION_BUS_ADDRES...Show more
samples/powerbtn/powerbtn.sh in acpid (aka acpid2) 2.0.16 and earlier uses the pidof program incorrectly, which allows local users to gain privileges by running a program with the name kded4 and a DBUS_SESSION_BUS_ADDRESS environment variable containing commands.Show less
1Tedfelix
1Acpid
Apr 29, 2026
Oct 5, 2011
N/A· v4
N/A· v3
2.1 LOW· v2
acpid.c in acpid before 2.0.9 does not properly handle a situation in which a process has connected to acpid.socket but is not reading any data, which allows local users to cause a denial of service (daemon hang) via a c...Show more
acpid.c in acpid before 2.0.9 does not properly handle a situation in which a process has connected to acpid.socket but is not reading any data, which allows local users to cause a denial of service (daemon hang) via a crafted application that performs a connect system call but no read system calls.Show less