CVE-2007-1400

Publication date

2007-03-10 22:00:00

Family

mitre

State

PUBLISHED

Description

Plash permits sandboxed processes to open /dev/tty, which allows local users to escape sandbox restrictions and execute arbitrary commands by sending characters to a shell process on the same termimal via the TIOCSTI ioctl.