Updates/kdebase-3.5.3-0.2.fc4
From FarsiWeb
The packages kdebase contains the core applications for the K Desktop Environment.
This update fixes the following security vulnerabilities:
- Common Vulnerabilities and Exposures issue CVE 2006-2449:
- KDE Display Manager (KDM) in KDE 3.2.0 up to 3.5.3 allows local users to read arbitrary files via a symlink attack related to the session type for login.
This update includes a patch that fixes the above-mentioned possible security flaw.
[edit]
Notes
- The default installation of Sharif Linux does not include the package kdebase.
- You are not affected by this unless you have explicitly changed your login manager to KDM, which is not supported by FarsiWeb.
