suse · CVE-2017-8422

Quick triage

Priority: high Published: 2021-05-30 13:56:15 UTC Updated: 2025-03-25 00:54:20 UTC

View at Official suse advisory, NVD, CVE.org · CVE detail

Freshness: upstream tracker timestamp is available; use API updated time as primary recency signal.

Tracker summary

CVE-2017-8422 severity important: SUSE including 75 source package names (kauth-devel-5.20.0-7.1, kauth-devel-5.26.0-6.1, …), 151 product×package rows across 24 product lines (SUSE Liberty Linux 7, SUSE Linux Enterprise Desktop 12 SP1, … (24 product lines)): Fixed 141, Known Not Affected 10.

Description:

KDE kdelibs before 4.14.32 and KAuth before 5.34 allow local users to gain root privileges by spoofing a callerID and leveraging a privileged helper app.

cvelogic Threat Intelligence