PT-1998-1178 · Kde · Kde
Published
1998-02-06
·
Updated
2017-12-19
·
CVE-1999-1269
CVSS v2.0
2.1
Low
| Vector | AV:L/AC:L/Au:N/C:N/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
KDE beta 3
Description
The issue allows local users to overwrite arbitrary files via a symlink attack on the
.kss.pid file in screen savers.Recommendations
For KDE beta 3, consider restricting access to the screen saver functionality until a fix is available, and avoid using screen savers that may be vulnerable to symlink attacks.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Kde