KDE kdelibs 4.13.0

CPE Details

KDE kdelibs 4.13.0
4.13.0
2014-07-02
15h56 +00:00
2014-07-08
19h56 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:kde:kdelibs:4.13.0:*:*:*:*:*:*:*

Informations

Vendor

kde

Product

kdelibs

Version

4.13.0

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2017-8422 2017-05-17 12h00 +00:00 KDE kdelibs before 4.14.32 and KAuth before 5.34 allow local users to gain root privileges by spoofing a callerID and leveraging a privileged helper app.
7.8
High
CVE-2017-6410 2017-03-02 05h00 +00:00 kpac/script.cpp in KDE kio before 5.32 and kdelibs before 4.14.30 calls the PAC FindProxyForURL function with a full https URL (potentially including Basic Authentication credentials, a query string, or PATH_INFO), which allows remote attackers to obtain sensitive information via a crafted PAC file.
5.5
Medium
CVE-2014-5033 2014-08-19 16h00 +00:00 KDE kdelibs before 4.14 and kauth before 5.1 does not properly use D-Bus for communication with a polkit authority, which allows local users to bypass intended access restrictions by leveraging a PolkitUnixProcess PolkitSubject race condition via a (1) setuid process or (2) pkexec process, related to CVE-2013-4288 and "PID reuse race conditions."
6.9
CVE-2014-3494 2014-07-01 14h00 +00:00 kio/usernotificationhandler.cpp in the POP3 kioslave in kdelibs 4.10.95 before 4.13.3 does not properly generate warning notifications, which allows man-in-the-middle attackers to obtain sensitive information via an invalid certificate.
4.3