Alerts This Week
Warning Icon 1 626
Alerts This Week
Warning Icon 1 626

Slackware 14.2: 2017-136-02 Moderate: Kdelibs Root Access Problem

slackware
Calendar Grey May 16, 2017
Dist Slackware Esm H88
Updated gnome-libs packages are now released for Slackware, addressing a vulnerability that could permit unauthorized root access from standard user accounts.
New kdelibs packages are available for Slackware 13.37, 14.0, 14.1, 14.2, and -current to fix a security issue

Summary

Here are the details from the Slackware 14.2 ChangeLog: patches/packages/kdelibs-4.14.32-i586-1_slack14.2.txz: Upgraded. This update fixes a security issue with KAuth that can lead to gaining root from an unprivileged account. For more information, see: https://www.openwall.com/lists/oss-security/2017/05/10/3 https://kde.org/info/security/advisory-20170510-1.txt https://www.cve.org/CVERecord?id=CVE-2017-8422 (* Security fix *)

Where Find New Packages

Thanks to the friendly folks at the OSU Open Source Lab (https://osuosl.org/) for donating FTP and rsync hosting to the Slackware project! :-)
Also see the "Get Slack" section on http://www.slackware.com/ for additional mirror sites near you.
Updated package for Slackware 13.37: ftp://ftp.slackware.com/pub/slackware/slackware-13.37/patches/packages/kdelibs-4.5.5-i486-3_slack13.37.txz
Updated package for Slackware x86_64 13.37: ftp://ftp.slackware.com/pub/slackware/slackware64-13.37/patches/packages/kdelibs-4.5.5-x86_64-3_slack13.37.txz
Updated package for Slackware 14.0: ftp://ftp.slackware.com/pub/slackware/slackware-14.0/patches/packages/kdelibs-4.8.5-i486-2_slack14.0.txz
Updated package for Slackware x86_64 14.0: ftp://ftp.slackware.com/pub/slackware/slackware64-14.0/patches/packages/kdelibs-4.8.5-x86_64-2_slack14.0.txz
Updated package for Slackware 14.1: ftp://ftp.slackware.com/pub/slackware/slackware-14.1/patches/packages/kdelibs-4.10.5-i486-3_slack14.1.txz
Updated package for...

Read the Full Advisory

MD5 Signatures

Slackware 13.37 package: 2074c2dff09a4a74e60f48f08e0e9abc kdelibs-4.5.5-i486-3_slack13.37.txz
Slackware x86_64 13.37 package: 692beba6610b1f2440650497bc3085cb kdelibs-4.5.5-x86_64-3_slack13.37.txz
Slackware 14.0 package: c61bd3215be43dac0544b54342548837 kdelibs-4.8.5-i486-2_slack14.0.txz
Slackware x86_64 14.0 package: a408af269fbba64dde31a91b91c72650 kdelibs-4.8.5-x86_64-2_slack14.0.txz
Slackware 14.1 package: 5ddb537f570c63c792511a095bbadb86 kdelibs-4.10.5-i486-3_slack14.1.txz
Slackware x86_64 14.1 package: 199c36c994a11bd48748ef3988ee143b kdelibs-4.10.5-x86_64-3_slack14.1.txz
Slackware 14.2 package: ef1e87085864e36b70d9aadcdd20fa7a kdelibs-4.14.32-i586-1_slack14.2.txz
Slackware x86_64 14.2 package: 5182a2121695c705376366f4be56861f kdelibs-4.14.32-x86_64-1_slack14.2.txz
Slackware -current package: ba5ba522f02e69ee6f44fc686cce081f kde/kdelibs-4.14.32-i586-1.txz
Slackware x86_64 -current package: da0befacb4014eafa221fbc694542d97 kde/kdelibs-4.14.32-x86_64-1.txz

Severity
important
Lowest
Low
Medium
High
Critical

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Installation Instructions

Installation instructions: Upgrade the package as root: # upgradepkg kdelibs-4.14.32-i586-1_slack14.2.txz

Related News

Your message here