CVE-2020-12755

Source
https://nvd.nist.gov/vuln/detail/CVE-2020-12755
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2020-12755.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2020-12755
Related
Published
2020-05-09T16:15:11Z
Modified
2025-02-19T03:02:44.021560Z
Severity
  • 3.3 (Low) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N CVSS Calculator
Summary
[none]
Details

fishProtocol::establishConnection in fish/fish.cpp in KDE kio-extras through 20.04.0 makes a cacheAuthentication call even if the user had not set the keepPassword option. This may lead to unintended KWallet storage of a password.

References

Affected packages

Debian:11 / kio-extras

Package

Name
kio-extras
Purl
pkg:deb/debian/kio-extras?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4:20.08.3-1

Ecosystem specific

{
    "urgency": "low"
}

Debian:12 / kio-extras

Package

Name
kio-extras
Purl
pkg:deb/debian/kio-extras?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4:20.08.3-1

Ecosystem specific

{
    "urgency": "low"
}

Debian:13 / kio-extras

Package

Name
kio-extras
Purl
pkg:deb/debian/kio-extras?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4:20.08.3-1

Ecosystem specific

{
    "urgency": "low"
}

Git / github.com/kde/kio-extras

Affected ranges

Type
GIT
Repo
https://github.com/kde/kio-extras
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Last affected

Affected versions

v15.*

v15.07.80
v15.07.90
v15.08.0
v15.08.1
v15.08.2
v15.11.80
v15.11.90
v15.12.0
v15.12.1
v15.12.2
v15.12.3

v16.*

v16.03.80
v16.03.90
v16.04.0
v16.04.1
v16.07.80
v16.07.90
v16.08.0
v16.08.1
v16.08.2
v16.08.3
v16.11.80
v16.11.90
v16.12.0
v16.12.1
v16.12.2
v16.12.3

v17.*

v17.03.80
v17.03.90
v17.04.0
v17.04.1
v17.04.2
v17.04.3
v17.07.80
v17.07.90
v17.08.0
v17.08.1
v17.08.2
v17.11.80
v17.11.90
v17.12.0
v17.12.1
v17.12.2
v17.12.3

v18.*

v18.03.80
v18.03.90
v18.04.0
v18.04.1
v18.04.2
v18.07.80
v18.07.90
v18.08.0
v18.08.1
v18.08.2
v18.11.80
v18.11.90
v18.12.0
v18.12.1

v19.*

v19.07.80
v19.07.90
v19.08.0
v19.08.1
v19.08.2
v19.11.80
v19.11.90
v19.12.0
v19.12.1
v19.12.2
v19.12.3

v20.*

v20.03.80
v20.03.90
v20.04.0

v4.*

v4.96.0
v4.97.0
v4.98.0

v5.*

v5.0.0
v5.0.95
v5.1.0
v5.1.1
v5.1.95
v5.2.0
v5.2.1
v5.2.95