|
|
Log in / Subscribe / Register

kde-workspace: privilege escalation

Package(s):kde-workspace CVE #(s):CVE-2014-8651
Created:November 11, 2014 Updated:December 31, 2015
Description: From the Ubuntu advisory:

David Edmundson discovered that the KDE Clock KCM policykit helper did not properly guard against untrusted input. Under certain circumstances, a process running under the user's session could exploit this to run programs as the administrator.

See also this KDE advisory.

Alerts:
Gentoo 201512-12 systemsettings 2015-12-30
Mageia MGASA-2014-0480 kdebase4-workspace 2014-11-21
Fedora FEDORA-2014-14865 kde-workspace 2014-11-17
Fedora FEDORA-2014-14813 kde-workspace 2014-11-15
Mageia MGASA-2014-0445 kdebase4-workspace 2014-11-14
Ubuntu USN-2402-1 kde-workspace 2014-11-10

to post comments


Copyright © 2026, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds