CVE-2015-0856 sddm

Metadata

medium
4.6
sddm
CVE-2015-0856
2017-06-18 07:04
CVE-2015-0856
2017-06-16 19:13
2017-04-01 19:11
2017-01-05 20:16

Description

daemon/Greeter.cpp in sddm before 0.13.0 does not properly disable the KDE crash handler, which allows local users to gain privileges by crashing a greeter when using certain themes, as demonstrated by the plasma-workspace breeze theme.

Am I vulnerable?

The constraints below list the versions that this vulnerability is patched in, and versions that are unaffected. If a patch is ready but unrealeased, then it is pending.

Or, you can just let us figure it out for you! Appcanary continously monitor your installed packages, and tell you if any of them are vulnerable.

Sign up for monitoring

Affected package information

Release Package Patched in
buster sddm 0.12.0-5
sid sddm 0.12.0-5
stretch sddm 0.12.0-5