freebsd-ports/x11/kdelibs4
Tobias C. Berner 59152311a4 Add upstream fixes for CVE-2017-8422 to x11/kdelibs4 and devel/kf5-kauth
KAuth contains a logic flaw in which the service invoking dbus
is not properly checked.

This allows spoofing the identity of the caller and with some
carefully crafted calls can lead to gaining root from an
unprivileged account.

https://www.kde.org/info/security/advisory-20170510-1.txt

Reviewed by:	rakuco
Approved by:	rakuco (mentor)
Obtained from:	https://www.kde.org/info/security/advisory-20170510-1.txt
MFH:		2017Q2
Security:	CVE-2017-8422
Differential Revision:	https://reviews.freebsd.org/D10660
2017-05-10 12:03:58 +00:00
..
files Add upstream fixes for CVE-2017-8422 to x11/kdelibs4 and devel/kf5-kauth 2017-05-10 12:03:58 +00:00
distinfo Update x11/kdelibs4 to 4.14.30. 2017-03-26 15:45:23 +00:00
Makefile Add upstream fixes for CVE-2017-8422 to x11/kdelibs4 and devel/kf5-kauth 2017-05-10 12:03:58 +00:00
pkg-descr
pkg-plist x11/kde4: update to kdelibs version 4.14.10 2016-06-22 18:57:33 +00:00