CVE-2000-0393
The KDE kscd program does not drop privileges when executing a program specified in a user’s SHELL environmental variable, which allows the user to gain privileges by specifying an alternate program to execute.
Date published : 2000-07-12
http://www.securityfocus.com/bid/1206
http://archives.neohapsis.com/archives/bugtraq/2000-05/0172.html