[Bug 1350019] Re: CVE-2014-5033: kauth authentication bypass

Launchpad Bug Tracker 1350019 at bugs.launchpad.net
Thu Jul 31 13:51:12 UTC 2014


This bug was fixed in the package kde4libs - 4:4.13.2a-0ubuntu0.3

---------------
kde4libs (4:4.13.2a-0ubuntu0.3) trusty-security; urgency=medium

  * SECURITY UPDATE: kauth authentication bypass (LP: #1350019)
    - debian/patches/CVE-2014-5033.patch: use dbus system bus name instead
      of PID for authentication. Cherry-picked from upstream.
    - CVE-2014-5033
 -- Felix Geyer <debfx at ubuntu.com>   Tue, 29 Jul 2014 22:35:14 +0200

** Changed in: kde4libs (Ubuntu Trusty)
       Status: In Progress => Fix Released

-- 
You received this bug notification because you are a member of Kubuntu
Bugs, which is subscribed to kde4libs in Ubuntu.
https://bugs.launchpad.net/bugs/1350019

Title:
  CVE-2014-5033: kauth authentication bypass

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/kde4libs/+bug/1350019/+subscriptions




More information about the kubuntu-bugs mailing list