https://bugzilla.novell.com/show_bug.cgi?id=391748
User drankinatty@suddenlinkmail.com added comment
https://bugzilla.novell.com/show_bug.cgi?id=391748#c4
--- Comment #4 from David Rankin 2008-05-17 02:10:32 MST ---
(The only response from the list I obtained is what pointed my in the kdelibs3
direction. It follows:)
<quote>
I met the same trouble in openSUSE 10.3 i386 environment on my laptop.
The problem was triggered by updating "kdelibs3*" packages to version
3.5.7-72.9 or later and I think it is related to the issue CVE-2008-1671:
start_kdeinit in KDE 3.5.5 through 3.5.9, when installed setuid root,
allows local users to cause a denial of service and possibly execute
arbitrary code via "user-influenceable input" (probably command-line
arguments) that cause start_kdeinit to send SIGUSR1 signals to other
processes.
http://www.suse.de/~meissner/cve/CVE-2008-1671.html
I downgraded "kdelibs3*" packages to version 3.5.7-72.6, which I found
in the "Updates" repository, and the problem isn't reproduced.
On the other hand, I have other desktops, on which I installed openSUSE
10.3 i386 and x86_64, and in those environments, the problem isn't
reproduced by updating "kdelibs3*" packages to version 3.5.7-72.9
though. So, the problem was provided not only by updating "kdelibs3*"
packages, but also by other conditions, which is not specified yet.
</quote>
See: Re: [opensuse] kdebase3-3.5.7-87.5 Update on x86-64 -- Normal user Login
Freeze, root - OK
List: opensuse@opensuse.org
Date: 5/10/2008
--
Configure bugmail: https://bugzilla.novell.com/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are on the CC list for the bug.