Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

David Edmundson

#50488de 53,638
4.6CVSS total
Vulnerabilidades · 1
PT-2015-4920
4.6
2015-11-05
Kde · Sddm · CVE-2015-0856
**Name of the Vulnerable Software and Affected Versions** sddm versions prior to 0.13.0 **Description** The issue is related to the daemon/Greeter.cpp in sddm, where it does not properly disable the KDE crash handler. This allows local users to gain privileges by crashing a greeter when using certain themes. An example of such a theme is the plasma-workspace breeze theme. **Recommendations** For versions prior to 0.13.0, update to version 0.13.0 or later to resolve the issue. As a temporary workaround, consider avoiding the use of themes that may trigger the crash handler, such as the plasma-workspace breeze theme, until the update is applied.