| Name | CVE-2005-0392 |
| Description | ppxp does not drop root privileges before opening log files, which allows local users to execute arbitrary commands. |
| Source | CVE (at NVD; CERT, ENISA, LWN, oss-sec, fulldisc, Debian ELTS, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more) |
| References | DSA-725-1, DSA-725-2 |
The information below is based on the following data on fixed versions.
| Package | Type | Release | Fixed Version | Urgency | Origin | Debian Bugs |
|---|---|---|---|---|---|---|
| ppxp | source | woody | 0.2001080415-6woody2 | DSA-725-1 | ||
| ppxp | source | sarge | 0.2001080415-10sarge2 | DSA-725-2 | ||
| ppxp | source | (unstable) | 0.2001080415-11 |