Back

HIGH

kauth: service invoking dbus is not properly checked and allows local privilege escalation

Published May 17, 2017

Description

KDE kdelibs before 4.14.32 and KAuth before 5.34 allow local users to gain root privileges by spoofing a callerID and leveraging a privileged helper app.

Affected products

Remediation

No remediation recorded yet.

Metrics

References (15)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published May 17, 2017
Updated Aug 5, 2024
Reserved May 2, 2017
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity Important
Public date May 10, 2017