Errata ID | 64 |
---|---|
Date | 2019-05-02 |
Source package | kauth |
Fixed in version | 5.28.0-2+deb9u1 |
Description | This update addresses the following issue: * KAuth allows to pass parameters with arbitrary types to helpers running as root over DBus. Certain types can cause crashes and trigger decoding arbitrary images with dynamically loaded plugins. (CVE-2019-7443) |
Additional notes | |
CVE ID | CVE-2019-7443 |
UCS Bug number | #49375 |