Buffer overflow in XShisen before 1.36 allows local users to execute arbitrary code via a long GECOS field.
{ "urgency": "not yet assigned" }