CNCVE编号:CNCVE-20010496 CVE编号:CAN-2001-0496 安全级别:中 漏洞中文描述: kdesu 创建包括认证信息的完全可读临时文件,这允许本地用户获得权限。 漏洞英文描述: kdesu creates world readable temporary files containing authentication info, which can allow local users to gain privileges. 漏洞参考: REDHAT:RHSA-2001:059 URL:http://www.redhat.com/support/errata/RHSA-2001-059.html MANDRAKE:MDKSA-2001:046 URL:http://www.linux-mandrake.com/en/security/2001/MDKSA-2001-046.php3 系统类型:其他 漏洞类型:设计错误