Print

Print


    Synopsis: Important: kdelibs and kde-settings security and bug fix update
    Advisory ID:       SLSA-2019:2606-1
    Issue Date:        2019-09-03
    CVE Numbers:       CVE-2019-14744
    --
    
    * kdelibs: malicious desktop files and configuration files lead to code
    execution with minimal user interaction (CVE-2019-14744)
    
    Bug Fix(es):
    
    * kde.csh profile file contains bourne-shell code
    --
    
    SL7
      x86_64
        kdelibs-4.14.8-11.el7_7.i686.rpm
        kdelibs-4.14.8-11.el7_7.x86_64.rpm
        kdelibs-common-4.14.8-11.el7_7.x86_64.rpm
        kdelibs-debuginfo-4.14.8-11.el7_7.i686.rpm
        kdelibs-debuginfo-4.14.8-11.el7_7.x86_64.rpm
        kdelibs-ktexteditor-4.14.8-11.el7_7.i686.rpm
        kdelibs-ktexteditor-4.14.8-11.el7_7.x86_64.rpm
        kdelibs-devel-4.14.8-11.el7_7.i686.rpm
        kdelibs-devel-4.14.8-11.el7_7.x86_64.rpm
      noarch
        kde-settings-19-23.10.el7_7.noarch.rpm
        kde-settings-ksplash-19-23.10.el7_7.noarch.rpm
        kde-settings-plasma-19-23.10.el7_7.noarch.rpm
        kde-settings-pulseaudio-19-23.10.el7_7.noarch.rpm
        qt-settings-19-23.10.el7_7.noarch.rpm
        kde-settings-minimal-19-23.10.el7_7.noarch.rpm
        kdelibs-apidocs-4.14.8-11.el7_7.noarch.rpm
    
    - Scientific Linux Development Team