Unrated severityNVD Advisory· Published Dec 31, 2003· Updated Jun 16, 2026
CVE-2003-1167
CVE-2003-1167
Description
misc.cpp in KPopup 0.9.1 trusts the PATH variable when executing killall, which allows local users to elevate their privileges by modifying the PATH variable to reference a malicious killall program.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:gernot_stocker:kpopup:0.9.1:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:gernot_stocker:kpopup:0.9.1:*:*:*:*:*:*:*
- cpe:2.3:a:gernot_stocker:kpopup:0.9.5_pre2:*:*:*:*:*:*:*
- (no CPE)range: = 0.9.1
Patches
Vulnerability mechanics
References
5- secunia.com/advisories/10105nvdPatch
- www.osvdb.org/2742nvdPatch
- www.securityfocus.com/archive/1/342736nvdExploit
- www.securityfocus.com/bid/8915nvdExploitPatch
- exchange.xforce.ibmcloud.com/vulnerabilities/13540nvd
News mentions
0No linked articles in our index yet.