Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2015-0856

Опубликовано: 24 нояб. 2015
Источник: nvd
CVSS2: 4.6
EPSS Низкий

Описание

daemon/Greeter.cpp in sddm before 0.13.0 does not properly disable the KDE crash handler, which allows local users to gain privileges by crashing a greeter when using certain themes, as demonstrated by the plasma-workspace breeze theme.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:o:fedoraproject:fedora:22:*:*:*:*:*:*:*
Конфигурация 2
cpe:2.3:a:sddm_project:sddm:*:*:*:*:*:*:*:*
Версия до 0.12.0 (включая)

EPSS

Процентиль: 38%
0.00167
Низкий

4.6 Medium

CVSS2

Дефекты

CWE-264

Связанные уязвимости

ubuntu
около 10 лет назад

daemon/Greeter.cpp in sddm before 0.13.0 does not properly disable the KDE crash handler, which allows local users to gain privileges by crashing a greeter when using certain themes, as demonstrated by the plasma-workspace breeze theme.

debian
около 10 лет назад

daemon/Greeter.cpp in sddm before 0.13.0 does not properly disable the ...

github
больше 3 лет назад

daemon/Greeter.cpp in sddm before 0.13.0 does not properly disable the KDE crash handler, which allows local users to gain privileges by crashing a greeter when using certain themes, as demonstrated by the plasma-workspace breeze theme.

EPSS

Процентиль: 38%
0.00167
Низкий

4.6 Medium

CVSS2

Дефекты

CWE-264