Novell Home

CVE-2010-0436

Common Vulnerabilities and Exposures

[Previous] [Index] [Next]

Upstream information

CVE-2010-0436 at MITRE

Description

Race condition in backend/ctrl.c in KDM in KDE Software Compilation (SC) 2.2.0 through 4.4.2 allows local users to change the permissions of arbitrary files, and consequently gain privileges, by blocking the removal of a certain directory that contains a control socket, related to improper interaction with ksm.

NVD CVSS v2 Base Score: 6.9 (AV:L/AC:M/Au:N/C:C/I:C/A:C)

Novell/SUSE information

Novell Bugzilla entry: 584223

SUSE Security Advisories:

List of released packages

Product(s) Fixed package version(s) References
openSUSE 11.0
  • kdebase3-debuginfo >= 3.5.9-65.4
  • kdebase3-debugsource >= 3.5.9-65.4
openSUSE 11.0
  • fileshareset >= 2.0-501.4
  • kdebase3 >= 3.5.9-65.4
  • kdebase3-32bit >= 3.5.9-65.4
  • kdebase3-64bit >= 3.5.9-65.4
  • kdebase3-beagle >= 3.5.9-65.4
  • kdebase3-devel >= 3.5.9-65.4
  • kdebase3-extra >= 3.5.9-65.4
  • kdebase3-kdm >= 3.5.9-65.4
  • kdebase3-nsplugin >= 3.5.9-65.4
  • kdebase3-runtime >= 3.5.9-65.4
  • kdebase3-runtime-32bit >= 3.5.9-65.4
  • kdebase3-runtime-64bit >= 3.5.9-65.4
  • kdebase3-samba >= 3.5.9-65.4
  • kdebase3-session >= 3.5.9-65.4
  • misc-console-font >= 3.5.9-65.4
openSUSE 11.1
  • kdebase3-debuginfo >= 3.5.10-17.5.1
  • kdebase3-debuginfo-32bit >= 3.5.10-17.5.1
  • kdebase3-debugsource >= 3.5.10-17.5.1
openSUSE 11.1
  • fileshareset >= 2.0-17.5.1
  • kdebase3 >= 3.5.10-17.5.1
  • kdebase3-32bit >= 3.5.10-17.5.1
  • kdebase3-beagle >= 3.5.10-17.5.1
  • kdebase3-devel >= 3.5.10-17.5.1
  • kdebase3-extra >= 3.5.10-17.5.1
  • kdebase3-kdm >= 3.5.10-17.5.1
  • kdebase3-nsplugin >= 3.5.10-17.5.1
  • kdebase3-runtime >= 3.5.10-17.5.1
  • kdebase3-runtime-32bit >= 3.5.10-17.5.1
  • kdebase3-samba >= 3.5.10-17.5.1
  • kdebase3-session >= 3.5.10-17.5.1
  • misc-console-font >= 3.5.10-17.5.1
SUSE Linux Enterprise Server for SAP 10 SP2
  • fileshareset >= 2.0-84.74.2
  • kdebase3 >= 3.5.1-69.75.2
  • kdebase3-32bit >= 3.5.1-69.75.2
  • kdebase3-devel >= 3.5.1-69.75.2
  • kdebase3-extra >= 3.5.1-69.75.2
  • kdebase3-kdm >= 3.5.1-69.75.2
  • kdebase3-ksysguardd >= 3.5.1-69.75.2
  • kdebase3-nsplugin >= 3.5.1-69.75.2
  • kdebase3-nsplugin64 >= 3.5.1-69.75.2
  • kdebase3-samba >= 3.5.1-69.75.2
  • kdebase3-session >= 3.5.1-69.75.2
sles10-sp2-debuginfo.x86-64
sles10-sp2.ia64
sles10-sp2-debuginfo.s390x
sles10-sp2.ppc
sle10-sp2-sdk.ia64
sles10-sp2-debuginfo.ia64
sles10-sp2.x86
sles10-sp2-debuginfo.ia64
sles10-sp2-debuginfo.s390x
sle10-sp2-sdk.s390x
sled10-sp2.x86
sles10-sp2-debuginfo.x86
sled10-sp2.x86-64
sled10-sp2.x86
sle10-sp2-sdk.ppc
sles10-sp2-debuginfo.x86-64
sled10-sp2.x86-64
sles10-sp2.x86-64
sles10-sp2-debuginfo.ppc
sle10-sp2-sdk.x86
sles10-sp2-debuginfo.ppc
sles10-sp2.s390x
sles10-sp2-debuginfo.x86
sle10-sp2-sdk.x86-64
ZYPP Patch Nr: 6942
SUSE Linux Enterprise SDK 10 SP2
  • kdebase3-beagle >= 3.5.1-69.75.2
  • kdebase3-devel >= 3.5.1-69.75.2
  • kdebase3-extra >= 3.5.1-69.75.2
sles10-sp2-debuginfo.x86-64
sles10-sp2.ia64
sles10-sp2-debuginfo.s390x
sles10-sp2.ppc
sle10-sp2-sdk.ia64
sles10-sp2-debuginfo.ia64
sles10-sp2.x86
sles10-sp2-debuginfo.ia64
sles10-sp2-debuginfo.s390x
sle10-sp2-sdk.s390x
sled10-sp2.x86
sles10-sp2-debuginfo.x86
sled10-sp2.x86-64
sled10-sp2.x86
sle10-sp2-sdk.ppc
sles10-sp2-debuginfo.x86-64
sled10-sp2.x86-64
sles10-sp2.x86-64
sles10-sp2-debuginfo.ppc
sle10-sp2-sdk.x86
sles10-sp2-debuginfo.ppc
sles10-sp2.s390x
sles10-sp2-debuginfo.x86
sle10-sp2-sdk.x86-64
ZYPP Patch Nr: 6942
SUSE Linux Enterprise SDK 10 SP2
  • kdebase3-beagle >= 3.5.1-69.75.2
  • kdebase3-devel >= 3.5.1-69.75.2
  • kdebase3-extra >= 3.5.1-69.75.2
  • kdebase3-nsplugin64 >= 3.5.1-69.75.2
sles10-sp2-debuginfo.x86-64
sles10-sp2.ia64
sles10-sp2-debuginfo.s390x
sles10-sp2.ppc
sle10-sp2-sdk.ia64
sles10-sp2-debuginfo.ia64
sles10-sp2.x86
sles10-sp2-debuginfo.ia64
sles10-sp2-debuginfo.s390x
sle10-sp2-sdk.s390x
sled10-sp2.x86
sles10-sp2-debuginfo.x86
sled10-sp2.x86-64
sled10-sp2.x86
sle10-sp2-sdk.ppc
sles10-sp2-debuginfo.x86-64
sled10-sp2.x86-64
sles10-sp2.x86-64
sles10-sp2-debuginfo.ppc
sle10-sp2-sdk.x86
sles10-sp2-debuginfo.ppc
sles10-sp2.s390x
sles10-sp2-debuginfo.x86
sle10-sp2-sdk.x86-64
ZYPP Patch Nr: 6942
SUSE Linux Enterprise Desktop 10 SP3 for x86
  • fileshareset >= 2.0-84.77.1
  • kdebase3 >= 3.5.1-69.77.1
  • kdebase3-beagle >= 3.5.1-69.77.1
  • kdebase3-devel >= 3.5.1-69.77.1
  • kdebase3-kdm >= 3.5.1-69.77.1
  • kdebase3-ksysguardd >= 3.5.1-69.77.1
  • kdebase3-nsplugin >= 3.5.1-69.77.1
  • kdebase3-samba >= 3.5.1-69.77.1
  • kdebase3-session >= 3.5.1-69.77.1
sles10-sp3-debuginfo.ia64
sle10-sp3-sdk.s390x
sles10-sp3.x86
sles10-sp3.ia64
sles10-sp3.s390x
sles10-sp3.x86-64
sle10-sp3-sdk.x86-64
sles10-sp3-debuginfo.ppc
sle10-sp3-sdk.ia64
sles10-sp3-debuginfo.x86
sled10-sp3.x86
sles10-sp3-debuginfo.s390x
sles10-sp3-debuginfo.x86-64
sle10-sp3-sdk.x86
sle10-sp3-sdk.ppc
sles10-sp3.ppc
sled10-sp3.x86-64
ZYPP Patch Nr: 6941
SUSE Linux Enterprise Desktop 10 SP3 for AMD64 and Intel EM64T
  • fileshareset >= 2.0-84.77.1
  • kdebase3 >= 3.5.1-69.77.1
  • kdebase3-32bit >= 3.5.1-69.77.1
  • kdebase3-beagle >= 3.5.1-69.77.1
  • kdebase3-devel >= 3.5.1-69.77.1
  • kdebase3-kdm >= 3.5.1-69.77.1
  • kdebase3-ksysguardd >= 3.5.1-69.77.1
  • kdebase3-nsplugin >= 3.5.1-69.77.1
  • kdebase3-samba >= 3.5.1-69.77.1
  • kdebase3-session >= 3.5.1-69.77.1
sles10-sp3-debuginfo.ia64
sle10-sp3-sdk.s390x
sles10-sp3.x86
sles10-sp3.ia64
sles10-sp3.s390x
sles10-sp3.x86-64
sle10-sp3-sdk.x86-64
sles10-sp3-debuginfo.ppc
sle10-sp3-sdk.ia64
sles10-sp3-debuginfo.x86
sled10-sp3.x86
sles10-sp3-debuginfo.s390x
sles10-sp3-debuginfo.x86-64
sle10-sp3-sdk.x86
sle10-sp3-sdk.ppc
sles10-sp3.ppc
sled10-sp3.x86-64
ZYPP Patch Nr: 6941
SUSE Linux Enterprise SDK 10 SP3
SUSE Linux Enterprise Server for SAP 10 SP3
  • fileshareset >= 2.0-84.77.1
  • kdebase3 >= 3.5.1-69.77.1
  • kdebase3-32bit >= 3.5.1-69.77.1
  • kdebase3-devel >= 3.5.1-69.77.1
  • kdebase3-extra >= 3.5.1-69.77.1
  • kdebase3-kdm >= 3.5.1-69.77.1
  • kdebase3-ksysguardd >= 3.5.1-69.77.1
  • kdebase3-nsplugin >= 3.5.1-69.77.1
  • kdebase3-nsplugin64 >= 3.5.1-69.77.1
  • kdebase3-samba >= 3.5.1-69.77.1
  • kdebase3-session >= 3.5.1-69.77.1
sles10-sp3-debuginfo.ia64
sle10-sp3-sdk.s390x
sles10-sp3.x86
sles10-sp3.ia64
sles10-sp3.s390x
sles10-sp3.x86-64
sle10-sp3-sdk.x86-64
sles10-sp3-debuginfo.ppc
sle10-sp3-sdk.ia64
sles10-sp3-debuginfo.x86
sled10-sp3.x86
sles10-sp3-debuginfo.s390x
sles10-sp3-debuginfo.x86-64
sle10-sp3-sdk.x86
sle10-sp3-sdk.ppc
sles10-sp3.ppc
sled10-sp3.x86-64
ZYPP Patch Nr: 6941
SUSE Linux Enterprise SDK 10 SP3
  • kdebase3-beagle >= 3.5.1-69.77.1
  • kdebase3-devel >= 3.5.1-69.77.1
  • kdebase3-extra >= 3.5.1-69.77.1
sles10-sp3-debuginfo.ia64
sle10-sp3-sdk.s390x
sles10-sp3.x86
sles10-sp3.ia64
sles10-sp3.s390x
sles10-sp3.x86-64
sle10-sp3-sdk.x86-64
sles10-sp3-debuginfo.ppc
sle10-sp3-sdk.ia64
sles10-sp3-debuginfo.x86
sled10-sp3.x86
sles10-sp3-debuginfo.s390x
sles10-sp3-debuginfo.x86-64
sle10-sp3-sdk.x86
sle10-sp3-sdk.ppc
sles10-sp3.ppc
sled10-sp3.x86-64
ZYPP Patch Nr: 6941
SUSE Linux Enterprise SDK 10 SP3
  • kdebase3-beagle >= 3.5.1-69.77.1
  • kdebase3-devel >= 3.5.1-69.77.1
  • kdebase3-extra >= 3.5.1-69.77.1
  • kdebase3-nsplugin64 >= 3.5.1-69.77.1
sles10-sp3-debuginfo.ia64
sle10-sp3-sdk.s390x
sles10-sp3.x86
sles10-sp3.ia64
sles10-sp3.s390x
sles10-sp3.x86-64
sle10-sp3-sdk.x86-64
sles10-sp3-debuginfo.ppc
sle10-sp3-sdk.ia64
sles10-sp3-debuginfo.x86
sled10-sp3.x86
sles10-sp3-debuginfo.s390x
sles10-sp3-debuginfo.x86-64
sle10-sp3-sdk.x86
sle10-sp3-sdk.ppc
sles10-sp3.ppc
sled10-sp3.x86-64
ZYPP Patch Nr: 6941
SUSE Linux Enterprise Server 10 SP3
  • fileshareset >= 2.0-84.77.1
  • kdebase3 >= 3.5.1-69.77.1
  • kdebase3-devel >= 3.5.1-69.77.1
  • kdebase3-extra >= 3.5.1-69.77.1
  • kdebase3-kdm >= 3.5.1-69.77.1
  • kdebase3-ksysguardd >= 3.5.1-69.77.1
  • kdebase3-nsplugin >= 3.5.1-69.77.1
  • kdebase3-samba >= 3.5.1-69.77.1
  • kdebase3-session >= 3.5.1-69.77.1
sles10-sp3-debuginfo.ia64
sle10-sp3-sdk.s390x
sles10-sp3.x86
sles10-sp3.ia64
sles10-sp3.s390x
sles10-sp3.x86-64
sle10-sp3-sdk.x86-64
sles10-sp3-debuginfo.ppc
sle10-sp3-sdk.ia64
sles10-sp3-debuginfo.x86
sled10-sp3.x86
sles10-sp3-debuginfo.s390x
sles10-sp3-debuginfo.x86-64
sle10-sp3-sdk.x86
sle10-sp3-sdk.ppc
sles10-sp3.ppc
sled10-sp3.x86-64
ZYPP Patch Nr: 6941
SUSE Linux Enterprise Server 10 SP3
  • fileshareset >= 2.0-84.77.1
  • kdebase3 >= 3.5.1-69.77.1
  • kdebase3-devel >= 3.5.1-69.77.1
  • kdebase3-extra >= 3.5.1-69.77.1
  • kdebase3-kdm >= 3.5.1-69.77.1
  • kdebase3-ksysguardd >= 3.5.1-69.77.1
  • kdebase3-nsplugin >= 3.5.1-69.77.1
  • kdebase3-nsplugin64 >= 3.5.1-69.77.1
  • kdebase3-samba >= 3.5.1-69.77.1
  • kdebase3-session >= 3.5.1-69.77.1
  • kdebase3-x86 >= 3.5.1-69.77.1
sles10-sp3-debuginfo.ia64
sle10-sp3-sdk.s390x
sles10-sp3.x86
sles10-sp3.ia64
sles10-sp3.s390x
sles10-sp3.x86-64
sle10-sp3-sdk.x86-64
sles10-sp3-debuginfo.ppc
sle10-sp3-sdk.ia64
sles10-sp3-debuginfo.x86
sled10-sp3.x86
sles10-sp3-debuginfo.s390x
sles10-sp3-debuginfo.x86-64
sle10-sp3-sdk.x86
sle10-sp3-sdk.ppc
sles10-sp3.ppc
sled10-sp3.x86-64
ZYPP Patch Nr: 6941
SUSE Linux Enterprise Server 10 SP3
  • fileshareset >= 2.0-84.77.1
  • kdebase3 >= 3.5.1-69.77.1
  • kdebase3-64bit >= 3.5.1-69.77.1
  • kdebase3-devel >= 3.5.1-69.77.1
  • kdebase3-extra >= 3.5.1-69.77.1
  • kdebase3-kdm >= 3.5.1-69.77.1
  • kdebase3-ksysguardd >= 3.5.1-69.77.1
  • kdebase3-nsplugin >= 3.5.1-69.77.1
  • kdebase3-samba >= 3.5.1-69.77.1
  • kdebase3-session >= 3.5.1-69.77.1
sles10-sp3-debuginfo.ia64
sle10-sp3-sdk.s390x
sles10-sp3.x86
sles10-sp3.ia64
sles10-sp3.s390x
sles10-sp3.x86-64
sle10-sp3-sdk.x86-64
sles10-sp3-debuginfo.ppc
sle10-sp3-sdk.ia64
sles10-sp3-debuginfo.x86
sled10-sp3.x86
sles10-sp3-debuginfo.s390x
sles10-sp3-debuginfo.x86-64
sle10-sp3-sdk.x86
sle10-sp3-sdk.ppc
sles10-sp3.ppc
sled10-sp3.x86-64
ZYPP Patch Nr: 6941
SUSE Linux Enterprise Server 10 SP3
  • fileshareset >= 2.0-84.77.1
  • kdebase3 >= 3.5.1-69.77.1
  • kdebase3-32bit >= 3.5.1-69.77.1
  • kdebase3-devel >= 3.5.1-69.77.1
  • kdebase3-extra >= 3.5.1-69.77.1
  • kdebase3-kdm >= 3.5.1-69.77.1
  • kdebase3-ksysguardd >= 3.5.1-69.77.1
  • kdebase3-nsplugin64 >= 3.5.1-69.77.1
  • kdebase3-samba >= 3.5.1-69.77.1
  • kdebase3-session >= 3.5.1-69.77.1
sles10-sp3-debuginfo.ia64
sle10-sp3-sdk.s390x
sles10-sp3.x86
sles10-sp3.ia64
sles10-sp3.s390x
sles10-sp3.x86-64
sle10-sp3-sdk.x86-64
sles10-sp3-debuginfo.ppc
sle10-sp3-sdk.ia64
sles10-sp3-debuginfo.x86
sled10-sp3.x86
sles10-sp3-debuginfo.s390x
sles10-sp3-debuginfo.x86-64
sle10-sp3-sdk.x86
sle10-sp3-sdk.ppc
sles10-sp3.ppc
sled10-sp3.x86-64
ZYPP Patch Nr: 6941
SUSE Linux Enterprise SDK 11 GA
  • kdebase4-workspace-devel >= 4.1.3-18.8.1
sles11.x86
sles11.ppc
sle11-sdk.x86
sles11.ia64
sles11.x86-64
sled11.x86
sled11.x86-64
sle11-sdk.ppc
sle11-sdk.ia64
sle11-sdk.x86-64
sles11.s390x
sle11-sdk.s390x
SAT Patch Nr: 2136
SUSE Linux Enterprise Desktop 11 GA
SUSE Linux Enterprise Server 11 GA
  • kde4-kdm >= 4.1.3-18.8.1
  • kde4-kgreeter-plugins >= 4.1.3-18.8.1
  • kde4-kwin >= 4.1.3-18.8.1
  • kdebase4-workspace >= 4.1.3-18.8.1
  • kdebase4-workspace-ksysguardd >= 4.1.3-18.8.1
sles11.x86
sles11.ppc
sle11-sdk.x86
sles11.ia64
sles11.x86-64
sled11.x86
sled11.x86-64
sle11-sdk.ppc
sle11-sdk.ia64
sle11-sdk.x86-64
sles11.s390x
sle11-sdk.s390x
SAT Patch Nr: 2136
openSUSE 11.0
  • kdebase4-workspace-debuginfo >= 4.0.4-24.8
  • kdebase4-workspace-debugsource >= 4.0.4-24.8
openSUSE 11.0
  • kde4-kdm >= 4.0.4-24.8
  • kde4-kdm-branding-upstream >= 4.0.4-24.8
  • kde4-kwin >= 4.0.4-24.8
  • kdebase4-workspace >= 4.0.4-24.8
  • kdebase4-workspace-branding-upstream >= 4.0.4-24.8
  • kdebase4-workspace-devel >= 4.0.4-24.8
  • kdebase4-workspace-ksysguardd >= 4.0.4-24.8
openSUSE 11.1
  • kdebase4-workspace-debuginfo >= 4.1.3-10.4.1
  • kdebase4-workspace-debugsource >= 4.1.3-10.4.1
openSUSE 11.1
  • kde4-kdm >= 4.1.3-10.4.1
  • kde4-kdm-branding-upstream >= 4.1.3-10.4.1
  • kde4-kgreeter-plugins >= 4.1.3-10.4.1
  • kde4-kwin >= 4.1.3-10.4.1
  • kdebase4-workspace >= 4.1.3-10.4.1
  • kdebase4-workspace-branding-upstream >= 4.1.3-10.4.1
  • kdebase4-workspace-devel >= 4.1.3-10.4.1
  • kdebase4-workspace-ksysguardd >= 4.1.3-10.4.1
openSUSE 11.2
  • kde4-kgreeter-plugins-debuginfo >= 4.3.5-0.3.1
  • kdebase4-workspace-debuginfo >= 4.3.5-0.3.1
  • kdebase4-workspace-debugsource >= 4.3.5-0.3.1
  • kdebase4-workspace-devel-debuginfo >= 4.3.5-0.3.1
  • kdebase4-workspace-google-gadgets-debuginfo >= 4.3.5-0.3.1
  • kdebase4-workspace-ksysguardd-debuginfo >= 4.3.5-0.3.1
  • kdm-debuginfo >= 4.3.5-0.3.1
  • kwin-debuginfo >= 4.3.5-0.3.1
openSUSE 11.2
  • kde4-kgreeter-plugins >= 4.3.5-0.3.1
  • kdebase4-workspace >= 4.3.5-0.3.1
  • kdebase4-workspace-branding-upstream >= 4.3.5-0.3.1
  • kdebase4-workspace-devel >= 4.3.5-0.3.1
  • kdebase4-workspace-google-gadgets >= 4.3.5-0.3.1
  • kdebase4-workspace-ksysguardd >= 4.3.5-0.3.1
  • kdm >= 4.3.5-0.3.1
  • kdm-branding-upstream >= 4.3.5-0.3.1
  • kwin >= 4.3.5-0.3.1

© 2014 Novell