If you are running a KDE desktop environment on your Linux operating system, you need to be extra careful and avoid downloading any ".desktop" or ".directory" file for a while. . A cybersecurity researcher has disclosed an unpatched zero-day vulnerability in the KDE software framework that could allow maliciously crafted .desktop and .directory files to silently run arbitrary code on a user's computer—without even requiring the victim to actually open it. KDE Plasma is one of the most popular open-source widget-based desktop environment for Linux users and comes as a default desktop environment on many Linux distributions, such as Manjaro, openSUSE, Kubuntu, and PCLinuxOS. The link for this article located at The Hacker News is no longer available. . A cybersecurity expert has revealed an undisclosed zero-day flaw in the GTK software platform impacting Linux systems.. KDE Desktop Security, Zero-Day Vulnerability, Code Execution Risk. . Brittany Day
The flaws could be exploited via a malicious web page or a RealMedia file run from a local drive to take over a user's system or delete files, according to RealNetworks. . . .. EEye Digital Security has uncovered new security holes affecting a wide range of RealNetworks' media players. The flaws could be exploited via a malicious web page or a RealMedia file run from a local drive to take over a user's system or delete files, according to RealNetworks. Researchers have turned up a myriad of serious security flaws in client software over the past few weeks, and such bugs can be difficult to patch because of the sheer number of desktops in use. The link for this article located at ComputerWeekly is no longer available. . Alerts concerning critical vulnerabilities in RealNetworks' media playback software have emerged, revealing potential threats to systems via harmful files.. RealNetworks Bugs, Security Threats, Media Player Exploits. . LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.