4
CVSSv2

CVE-2016-7787

Published: 23/12/2016 Updated: 30/10/2018
CVSS v2 Base Score: 4 | Impact Score: 2.9 | Exploitability Score: 8
CVSS v3 Base Score: 4.9 | Impact Score: 3.6 | Exploitability Score: 1.2
VMScore: 356
Vector: AV:N/AC:L/Au:S/C:N/I:P/A:N

Vulnerability Summary

A maliciously crafted command line for kdesu can result in the user only seeing part of the commands that will actually get executed as super user.

Vulnerable Product Search on Vulmon Subscribe to Product

kde kde-cli-tools -

opensuse leap 42.1

opensuse opensuse 13.2

Vendor Advisories

Debian Bug report logs - #839865 kde-cli-tools: CVE-2016-7787 Package: src:kde-cli-tools; Maintainer for src:kde-cli-tools is Debian/Kubuntu Qt/KDE Maintainers <debian-qt-kde@listsdebianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Wed, 5 Oct 2016 19:51:02 UTC Severity: important Tags: fixed-up ...