This bug was fixed in the package kde4libs - 4:4.8.5-0ubuntu0.4
---------------
kde4libs (4:4.8.5-0ubuntu0.4) precise-security; urgency=medium
* SECURITY UPDATE: kauth authentication bypass (LP: #1350019)
- debian/patches/CVE-2014-5033.patch: use dbus system bus name instead
of PID for authentication. Cherry-picked from upstream.
- CVE-2014-5033
-- Felix Geyer <[email protected]> Wed, 30 Jul 2014 18:55:20 +0200
** Changed in: kde4libs (Ubuntu Precise)
Status: In Progress => Fix Released
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1350019
Title:
CVE-2014-5033: kauth authentication bypass
To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/kde4libs/+bug/1350019/+subscriptions
--
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs