|
KisMAC contains a flaw that may allow a malicious user to gain access to unauthorized privileges. The issue is triggered when an attacker changes the value of the $DRIVER_KEXT variable in the viha_driver.sh script allowing the creation of a setuid executable owned by the attacker's uid. This flaw may lead to a loss of integrity.
|