Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
Gentoo Linux Security Advisory GLSA 200707-10
https://security.gentoo.org/
Severity: High
Title: Festival: Privilege elevation
Date: July 25, 2007
Bugs: #170477
ID: 200707-10
Synopsis
=======
A vulnerability has been discovered in Festival, allowing for a local
privilege escalation.
Background
=========
Festival is a text-to-speech accessibility program.
Affected packages
================
-------------------------------------------------------------------
Package / Vulnerable / Unaffected
-------------------------------------------------------------------
1 app-accessibility/festival < 1.95_beta-r4 >= 1.95_beta-r4
==========
Konstantine Shirow reported a vulnerability in default Gentoo
configurations of Festival. The daemon is configured to run with root
privileges and to listen on localhost, without requiring a password.
Impa...
style>.gentoo_availability{display:block;}
Get the latest Linux and open source security news straight to your inbox.