Bug 570330 (CVE-2010-0923)
Summary: | CVE-2010-0923 kdebase: race condition may allow local attackers to bypass screen locking | ||
---|---|---|---|
Product: | [Other] Security Response | Reporter: | Vincent Danen <vdanen> |
Component: | vulnerability | Assignee: | Red Hat Product Security <security-response-team> |
Status: | CLOSED CURRENTRELEASE | QA Contact: | |
Severity: | high | Docs Contact: | |
Priority: | high | ||
Version: | unspecified | CC: | desktop-bugs, rcvalle, than |
Target Milestone: | --- | Keywords: | Security |
Target Release: | --- | ||
Hardware: | All | ||
OS: | Linux | ||
URL: | http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2010-0923 | ||
Whiteboard: | |||
Fixed In Version: | Doc Type: | Bug Fix | |
Doc Text: | Story Points: | --- | |
Clone Of: | Environment: | ||
Last Closed: | 2010-03-04 03:43:23 UTC | Type: | --- |
Regression: | --- | Mount Type: | --- |
Documentation: | --- | CRM: | |
Verified Versions: | Category: | --- | |
oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
Cloudforms Team: | --- | Target Upstream Version: | |
Embargoed: | |||
Bug Depends On: | 570331 | ||
Bug Blocks: |
Description
Vincent Danen
2010-03-03 21:45:42 UTC
This issue affects all current Fedora versions, and Fedora rawhide, which all contain version 4.4.0. This issue does not affect earlier versions of KDE. This has actually already been corrected: * Thu Feb 11 2010 Than Ngo <than> - 4.4.0-4 - move xsession desktop files to main package (cannot start kde from gdm if kdm not installed) - Desktop locking crashes (kde#217882#16) |