Back

MEDIUM

kbd: /etc/init.d/kbd dumps state to /dev/shm/defkeymap.map on shutdown

Published Apr 16, 2014

Description

The init script in kbd, possibly 1.14.1 and earlier, allows local users to overwrite arbitrary files via a symlink attack on /dev/shm/defkeymap.map.

Affected products

Remediation

Red Hat statement

Not vulnerable. This issue did not affect the versions of kbd as shipped with Red Hat Enterprise Linux 4, 5, or 6 as they do not include the affected script.

Metrics

Weaknesses (1)

References (6)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Apr 16, 2014
Updated Aug 6, 2024
Reserved Jan 14, 2011
NVD
Status Modified
Modified Jun 16, 2026
Red Hat
Severity Moderate
Public date Apr 18, 2011