CVE-2017-8422 kde4libs

Metadata

high
7.2
kde4libs
CVE-2017-8422
2017-06-18 07:52
CVE-2017-8422 kauth
CVE-2017-8422
2017-06-16 18:42
2017-06-01 05:03
2017-05-25 18:03
2017-05-19 05:03
2017-05-16 05:03
2017-05-12 10:03
2017-05-10 23:56
2017-05-10 13:03

Description

KDE kdelibs before 4.14.32 and KAuth before 5.34 allow local users to gain root privileges by spoofing a callerID and leveraging a privileged helper app.

Am I vulnerable?

The constraints below list the versions that this vulnerability is patched in, and versions that are unaffected. If a patch is ready but unrealeased, then it is pending.

Or, you can just let us figure it out for you! Appcanary continously monitor your installed packages, and tell you if any of them are vulnerable.

Sign up for monitoring

Affected package information

Release Package Patched in
buster kde4libs 4:4.14.26-2
jessie kde4libs 4:4.14.2-5+deb8u2
sid kde4libs 4:4.14.26-2
stretch kde4libs 4:4.14.26-2
wheezy kde4libs 4:4.8.4-4+deb7u3