CVE Vulnerabilities

CVE-2014-8651

Published: Dec 06, 2014 | Modified: Dec 07, 2016
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.2 HIGH
AV:L/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
6.9 MODERATE
AV:L/AC:M/Au:N/C:C/I:C/A:C
RedHat/V3
Ubuntu
MEDIUM

The KDE Clock KCM policykit helper in kde-workspace before 4.11.14 and plasma-desktop before 5.1.1 allows local users to gain privileges via a crafted ntpUtility (ntp utility name) argument.

Affected Software

Name Vendor Start Version End Version
Plasma-desktop Kde * 5.1 (including)
Kde-workspace Ubuntu precise *
Kde-workspace Ubuntu trusty *
Kde-workspace Ubuntu upstream *
Kde-workspace Ubuntu utopic *

References