KDE Kdelibs 4.0.0

CPE Details

KDE Kdelibs 4.0.0
4.0.0
2021-06-08
15h46 +00:00
2021-06-08
15h50 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:kde:kdelibs:4.0.0:*:*:*:*:*:*:*

Informations

Vendor

kde

Product

kdelibs

Version

4.0.0

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2017-8422 2017-05-17 12h00 +00:00 KDE kdelibs before 4.14.32 and KAuth before 5.34 allow local users to gain root privileges by spoofing a callerID and leveraging a privileged helper app.
7.8
High
CVE-2017-6410 2017-03-02 05h00 +00:00 kpac/script.cpp in KDE kio before 5.32 and kdelibs before 4.14.30 calls the PAC FindProxyForURL function with a full https URL (potentially including Basic Authentication credentials, a query string, or PATH_INFO), which allows remote attackers to obtain sensitive information via a crafted PAC file.
5.5
Medium
CVE-2014-5033 2014-08-19 16h00 +00:00 KDE kdelibs before 4.14 and kauth before 5.1 does not properly use D-Bus for communication with a polkit authority, which allows local users to bypass intended access restrictions by leveraging a PolkitUnixProcess PolkitSubject race condition via a (1) setuid process or (2) pkexec process, related to CVE-2013-4288 and "PID reuse race conditions."
6.9
CVE-2013-2074 2014-02-05 18h00 +00:00 kioslave/http/http.cpp in KIO in kdelibs 4.10.3 and earlier allows attackers to discover credentials via a crafted request that triggers an "internal server error," which includes the username and password in an error message.
5