VYPR
Unrated severityNVD Advisory· Published May 2, 2005· Updated Jun 16, 2026

CVE-2005-0070

CVE-2005-0070

Description

Synaesthesia 2.1 and earlier, and possibly other versions, when installed setuid root, does not drop privileges before processing configuration and mixer files, which allows local users to read arbitrary files.

Affected products

2
  • cpe:2.3:a:synaesthesia:synaesthesia:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:synaesthesia:synaesthesia:*:*:*:*:*:*:*:*range: <=2.1
    • (no CPE)range: <=2.1

Patches

Vulnerability mechanics

References

4

News mentions

0

No linked articles in our index yet.