Errata overview
Errata ID 487
Date 2019-05-02
Source package kauth
Fixed in version 5.28.0-2+deb9u1
Description
This update addresses the following issue:
* KAuth allows to pass parameters with arbitrary types to helpers running as
  root over DBus. Certain types can cause crashes and trigger decoding
  arbitrary images with dynamically loaded plugins. (CVE-2019-7443)
Additional notes
CVE ID CVE-2019-7443
UCS Bug number #49367