Alerts This Week
Warning Icon 1 619
Alerts This Week
Warning Icon 1 619

Mageia 6 MGASA-2019-0083 Critical: KAuth DBus Image Handling Issue

mageia
Calendar Grey February 14, 2019
Dist Mageia Esm H88
MGASA-2019-0083 - Updated kauth packages fix security vulnerability Publication date: 14 Feb 2019 UR
KAuth allows to pass parameters with arbitrary types to helpers running as root over DBus

Summary

KAuth allows to pass parameters with arbitrary types to helpers running as root over DBus. Certain types can cause crashes and trigger decoding arbitrary images with dynamically loaded plugins. References:

References

- https://bugs.mageia.org/show_bug.cgi?id=24334

- https://kde.org/info/security/advisory-20190209-1.txt

Resolution

SRPMS

- 6/core/kauth-5.42.0-1.1.mga6

Severity
critical
Lowest
Low
Medium
High
Critical

Publication date: 14 Feb 2019
URL: https://advisories.mageia.org/MGASA-2019-0083.html
Type: security

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here