Public bug reported:

The following is observed on a fresh Kubuntu 22.04.2 LTS installation.
Kate can override files without prompting even if the file shouldn't be
accessible to Kate if the full path to the file is given calling kate
from the terminal.

For example: calling `kate 
/var/lib/polkit-1/localauthority/10-vendor.d/fwupd.pkla` from a Terminal opens 
a blank editor window. After entering some text and pressing "Save", Kate will 
prompt for the password (correct behavior) - but then will override the 
existing file `fwupd.pkla` without prompting that the file already exists.
Furthermore, Kate shouldn't even be able to file without Root-Permissions, as 
the directory `/var/lib/polkit-1` has permissions 700 set.

Maybe this bug is not directly related to Kate but the PolicyKit
implementation of (K)Ubuntu?

** Affects: kate (Ubuntu)
     Importance: Undecided
         Status: New


** Tags: kde polkit

-- 
You received this bug notification because you are a member of Kubuntu
Bugs, which is subscribed to kate in Ubuntu.
https://bugs.launchpad.net/bugs/2016063

Title:
  Kate can overwrite files without prompting in directories it shouldn't
  be able to access

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/kate/+bug/2016063/+subscriptions


-- 
kubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/kubuntu-bugs

Reply via email to