kde-workspace: privilege escalation
| Package(s): | kde-workspace | CVE #(s): | CVE-2014-8651 | ||||||||||||||||||||||||
| Created: | November 11, 2014 | Updated: | December 31, 2015 | ||||||||||||||||||||||||
| Description: | From the Ubuntu advisory:
David Edmundson discovered that the KDE Clock KCM policykit helper did not properly guard against untrusted input. Under certain circumstances, a process running under the user's session could exploit this to run programs as the administrator. See also this KDE advisory. | ||||||||||||||||||||||||||
| Alerts: |
| ||||||||||||||||||||||||||
