[CVE] Access to privileged files
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
kwallet-pam (Ubuntu) |
Fix Released
|
High
|
Rik Mills | ||
Xenial |
Fix Released
|
High
|
Simon Quigley | ||
Artful |
Fix Released
|
High
|
Simon Quigley | ||
Bionic |
Fix Released
|
High
|
Simon Quigley | ||
Cosmic |
Fix Released
|
High
|
Rik Mills | ||
pam-kwallet (Ubuntu) |
Invalid
|
Undecided
|
Unassigned | ||
Trusty |
New
|
High
|
Unassigned |
Bug Description
KDE Project Security Advisory
=======
Title: kwallet-pam: Access to privileged files
Risk Rating: High
CVE: CVE-2018-10380
Versions: Plasma < 5.12.6
Date: 4 May 2018
Overview
========
kwallet-pam was doing file writing and permission changing
as root that with correct timing and use of carefully
crafted symbolic links could allow a non privileged user
to become the owner of any file on the system.
Workaround
==========
None (other than not using kwallet-pam)
Solution
========
Update to Plasma >= 5.12.6 or Plasma >= 5.13.0
Or apply the following patches:
Plasma 5.12
https:/
https:/
Plasma 5.8
https:/
https:/
Credits
=======
Thanks to Fabian Vogt for the report and to Albert Astals Cid for the fix.
CVE References
description: | updated |
Changed in kwallet-pam (Ubuntu Xenial): | |
assignee: | nobody → Simon Quigley (tsimonq2) |
Changed in kwallet-pam (Ubuntu Cosmic): | |
assignee: | nobody → Simon Quigley (tsimonq2) |
Changed in kwallet-pam (Ubuntu Bionic): | |
assignee: | nobody → Simon Quigley (tsimonq2) |
Changed in pam-kwallet (Ubuntu Trusty): | |
assignee: | nobody → Simon Quigley (tsimonq2) |
importance: | Undecided → High |
Changed in kwallet-pam (Ubuntu Trusty): | |
assignee: | Simon Quigley (tsimonq2) → nobody |
importance: | High → Undecided |
description: | updated |
Changed in kwallet-pam (Ubuntu Cosmic): | |
status: | New → Fix Committed |
information type: | Private Security → Public Security |
Changed in kwallet-pam (Ubuntu Cosmic): | |
assignee: | Simon Quigley (tsimonq2) → Rik Mills (rikmills) |
Changed in kwallet-pam (Ubuntu Bionic): | |
status: | New → In Progress |
Changed in kwallet-pam (Ubuntu Bionic): | |
status: | Fix Released → Triaged |
Changed in kwallet-pam (Ubuntu Artful): | |
status: | Fix Released → Triaged |
Changed in kwallet-pam (Ubuntu Xenial): | |
status: | Fix Released → Triaged |
tags: | added: community-security |
We don't have solid indicators of what this actually affects yet, so I'll nominate it for all Ubuntu releases.