plasma-workspace before 5.1.95 allows remote attackers to obtain passwords via a Trojan horse Look and Feel package.
The product does not restrict or incorrectly restricts access to a resource from an unauthorized actor.
Link | Tags |
---|---|
https://www.kde.org/info/security/advisory-20150122-1.txt | vendor advisory |
http://www.securityfocus.com/bid/72285 | vdb entry |
http://www.openwall.com/lists/oss-security/2015/01/22/6 | mailing list |