KSmserver in KDE Plasma Workspace (aka plasma-workspace) before 5.27.11.1 and 6.x before 6.0.5.1 allows connections via ICE based purely on the host, i.e., all local connections are accepted. This allows another user on the same machine to gain access to the session manager, e.g., use the session-restore feature to execute arbitrary code as the victim (on the next boot) via earlier use of the /tmp directory.
{ "ubuntu_priority": "medium", "binaries": [ { "binary_name": "libcolorcorrect5", "binary_version": "4:5.18.8-0ubuntu0.2" }, { "binary_name": "libcolorcorrect5-dbgsym", "binary_version": "4:5.18.8-0ubuntu0.2" }, { "binary_name": "libkworkspace5-5", "binary_version": "4:5.18.8-0ubuntu0.2" }, { "binary_name": "libkworkspace5-5-dbgsym", "binary_version": "4:5.18.8-0ubuntu0.2" }, { "binary_name": "libnotificationmanager1", "binary_version": "4:5.18.8-0ubuntu0.2" }, { "binary_name": "libnotificationmanager1-dbgsym", "binary_version": "4:5.18.8-0ubuntu0.2" }, { "binary_name": "libplasma-geolocation-interface5", "binary_version": "4:5.18.8-0ubuntu0.2" }, { "binary_name": "libplasma-geolocation-interface5-dbgsym", "binary_version": "4:5.18.8-0ubuntu0.2" }, { "binary_name": "libtaskmanager6", "binary_version": "4:5.18.8-0ubuntu0.2" }, { "binary_name": "libtaskmanager6-dbgsym", "binary_version": "4:5.18.8-0ubuntu0.2" }, { "binary_name": "libweather-ion7", "binary_version": "4:5.18.8-0ubuntu0.2" }, { "binary_name": "libweather-ion7-dbgsym", "binary_version": "4:5.18.8-0ubuntu0.2" }, { "binary_name": "plasma-workspace", "binary_version": "4:5.18.8-0ubuntu0.2" }, { "binary_name": "plasma-workspace-dbgsym", "binary_version": "4:5.18.8-0ubuntu0.2" }, { "binary_name": "plasma-workspace-dev", "binary_version": "4:5.18.8-0ubuntu0.2" }, { "binary_name": "plasma-workspace-wayland", "binary_version": "4:5.18.8-0ubuntu0.2" }, { "binary_name": "plasma-workspace-wayland-dbgsym", "binary_version": "4:5.18.8-0ubuntu0.2" }, { "binary_name": "sddm-theme-breeze", "binary_version": "4:5.18.8-0ubuntu0.2" } ], "availability": "No subscription required" }
{ "ubuntu_priority": "medium", "binaries": [ { "binary_name": "libcolorcorrect5", "binary_version": "4:5.24.7-0ubuntu0.2" }, { "binary_name": "libcolorcorrect5-dbgsym", "binary_version": "4:5.24.7-0ubuntu0.2" }, { "binary_name": "libkfontinst5", "binary_version": "4:5.24.7-0ubuntu0.2" }, { "binary_name": "libkfontinst5-dbgsym", "binary_version": "4:5.24.7-0ubuntu0.2" }, { "binary_name": "libkfontinstui5", "binary_version": "4:5.24.7-0ubuntu0.2" }, { "binary_name": "libkfontinstui5-dbgsym", "binary_version": "4:5.24.7-0ubuntu0.2" }, { "binary_name": "libkworkspace5-5", "binary_version": "4:5.24.7-0ubuntu0.2" }, { "binary_name": "libkworkspace5-5-dbgsym", "binary_version": "4:5.24.7-0ubuntu0.2" }, { "binary_name": "libnotificationmanager1", "binary_version": "4:5.24.7-0ubuntu0.2" }, { "binary_name": "libnotificationmanager1-dbgsym", "binary_version": "4:5.24.7-0ubuntu0.2" }, { "binary_name": "libplasma-geolocation-interface5", "binary_version": "4:5.24.7-0ubuntu0.2" }, { "binary_name": "libplasma-geolocation-interface5-dbgsym", "binary_version": "4:5.24.7-0ubuntu0.2" }, { "binary_name": "libtaskmanager6", "binary_version": "4:5.24.7-0ubuntu0.2" }, { "binary_name": "libtaskmanager6-dbgsym", "binary_version": "4:5.24.7-0ubuntu0.2" }, { "binary_name": "libweather-ion7", "binary_version": "4:5.24.7-0ubuntu0.2" }, { "binary_name": "libweather-ion7-dbgsym", "binary_version": "4:5.24.7-0ubuntu0.2" }, { "binary_name": "plasma-workspace", "binary_version": "4:5.24.7-0ubuntu0.2" }, { "binary_name": "plasma-workspace-data", "binary_version": "4:5.24.7-0ubuntu0.2" }, { "binary_name": "plasma-workspace-dbgsym", "binary_version": "4:5.24.7-0ubuntu0.2" }, { "binary_name": "plasma-workspace-dev", "binary_version": "4:5.24.7-0ubuntu0.2" }, { "binary_name": "plasma-workspace-wayland", "binary_version": "4:5.24.7-0ubuntu0.2" }, { "binary_name": "plasma-workspace-wayland-dbgsym", "binary_version": "4:5.24.7-0ubuntu0.2" }, { "binary_name": "sddm-theme-breeze", "binary_version": "4:5.24.7-0ubuntu0.2" } ], "availability": "No subscription required" }
{ "ubuntu_priority": "medium", "binaries": [ { "binary_name": "libcolorcorrect5", "binary_version": "4:5.27.11.1-0ubuntu1" }, { "binary_name": "libcolorcorrect5-dbgsym", "binary_version": "4:5.27.11.1-0ubuntu1" }, { "binary_name": "libkfontinst5", "binary_version": "4:5.27.11.1-0ubuntu1" }, { "binary_name": "libkfontinst5-dbgsym", "binary_version": "4:5.27.11.1-0ubuntu1" }, { "binary_name": "libkfontinstui5", "binary_version": "4:5.27.11.1-0ubuntu1" }, { "binary_name": "libkfontinstui5-dbgsym", "binary_version": "4:5.27.11.1-0ubuntu1" }, { "binary_name": "libkworkspace5-5", "binary_version": "4:5.27.11.1-0ubuntu1" }, { "binary_name": "libkworkspace5-5-dbgsym", "binary_version": "4:5.27.11.1-0ubuntu1" }, { "binary_name": "libnotificationmanager1", "binary_version": "4:5.27.11.1-0ubuntu1" }, { "binary_name": "libnotificationmanager1-dbgsym", "binary_version": "4:5.27.11.1-0ubuntu1" }, { "binary_name": "libplasma-geolocation-interface5", "binary_version": "4:5.27.11.1-0ubuntu1" }, { "binary_name": "libplasma-geolocation-interface5-dbgsym", "binary_version": "4:5.27.11.1-0ubuntu1" }, { "binary_name": "libtaskmanager6", "binary_version": "4:5.27.11.1-0ubuntu1" }, { "binary_name": "libtaskmanager6-dbgsym", "binary_version": "4:5.27.11.1-0ubuntu1" }, { "binary_name": "libweather-ion7", "binary_version": "4:5.27.11.1-0ubuntu1" }, { "binary_name": "libweather-ion7-dbgsym", "binary_version": "4:5.27.11.1-0ubuntu1" }, { "binary_name": "plasma-workspace", "binary_version": "4:5.27.11.1-0ubuntu1" }, { "binary_name": "plasma-workspace-data", "binary_version": "4:5.27.11.1-0ubuntu1" }, { "binary_name": "plasma-workspace-dbgsym", "binary_version": "4:5.27.11.1-0ubuntu1" }, { "binary_name": "plasma-workspace-dev", "binary_version": "4:5.27.11.1-0ubuntu1" }, { "binary_name": "plasma-workspace-wayland", "binary_version": "4:5.27.11.1-0ubuntu1" }, { "binary_name": "plasma-workspace-wayland-dbgsym", "binary_version": "4:5.27.11.1-0ubuntu1" }, { "binary_name": "sddm-theme-breeze", "binary_version": "4:5.27.11.1-0ubuntu1" } ], "availability": "No subscription required" }
{ "ubuntu_priority": "medium", "binaries": [ { "binary_name": "libcolorcorrect5", "binary_version": "4:5.27.11-0ubuntu4.1" }, { "binary_name": "libcolorcorrect5-dbgsym", "binary_version": "4:5.27.11-0ubuntu4.1" }, { "binary_name": "libkfontinst5", "binary_version": "4:5.27.11-0ubuntu4.1" }, { "binary_name": "libkfontinst5-dbgsym", "binary_version": "4:5.27.11-0ubuntu4.1" }, { "binary_name": "libkfontinstui5", "binary_version": "4:5.27.11-0ubuntu4.1" }, { "binary_name": "libkfontinstui5-dbgsym", "binary_version": "4:5.27.11-0ubuntu4.1" }, { "binary_name": "libkworkspace5-5", "binary_version": "4:5.27.11-0ubuntu4.1" }, { "binary_name": "libkworkspace5-5-dbgsym", "binary_version": "4:5.27.11-0ubuntu4.1" }, { "binary_name": "libnotificationmanager1", "binary_version": "4:5.27.11-0ubuntu4.1" }, { "binary_name": "libnotificationmanager1-dbgsym", "binary_version": "4:5.27.11-0ubuntu4.1" }, { "binary_name": "libplasma-geolocation-interface5", "binary_version": "4:5.27.11-0ubuntu4.1" }, { "binary_name": "libplasma-geolocation-interface5-dbgsym", "binary_version": "4:5.27.11-0ubuntu4.1" }, { "binary_name": "libtaskmanager6", "binary_version": "4:5.27.11-0ubuntu4.1" }, { "binary_name": "libtaskmanager6-dbgsym", "binary_version": "4:5.27.11-0ubuntu4.1" }, { "binary_name": "libweather-ion7", "binary_version": "4:5.27.11-0ubuntu4.1" }, { "binary_name": "libweather-ion7-dbgsym", "binary_version": "4:5.27.11-0ubuntu4.1" }, { "binary_name": "plasma-workspace", "binary_version": "4:5.27.11-0ubuntu4.1" }, { "binary_name": "plasma-workspace-data", "binary_version": "4:5.27.11-0ubuntu4.1" }, { "binary_name": "plasma-workspace-dbgsym", "binary_version": "4:5.27.11-0ubuntu4.1" }, { "binary_name": "plasma-workspace-dev", "binary_version": "4:5.27.11-0ubuntu4.1" }, { "binary_name": "plasma-workspace-wayland", "binary_version": "4:5.27.11-0ubuntu4.1" }, { "binary_name": "plasma-workspace-wayland-dbgsym", "binary_version": "4:5.27.11-0ubuntu4.1" }, { "binary_name": "sddm-theme-breeze", "binary_version": "4:5.27.11-0ubuntu4.1" } ], "availability": "No subscription required" }