Synopsis: Important: kdelibs and kde-settings security and bug fix update
Advisory ID: SLSA-2019:2606-1
Issue Date: 2019-09-03
CVE Numbers: CVE-2019-14744
—
* kdelibs: malicious desktop files and configuration files lead to code
execution with minimal user interaction (CVE-2019-14744)
Bug Fix(es):
* kde.csh profile file contains bourne-shell code
—
SL7
x86_64
kdelibs-4.14.8-11.el7_7.i686.rpm
kdelibs-4.14.8-11.el7_7.x86_64.rpm
kdelibs-common-4.14.8-11.el7_7.x86_64.rpm
kdelibs-debuginfo-4.14.8-11.el7_7.i686.rpm
kdelibs-debuginfo-4.14.8-11.el7_7.x86_64.rpm
kdelibs-ktexteditor-4.14.8-11.el7_7.i686.rpm
kdelibs-ktexteditor-4.14.8-11.el7_7.x86_64.rpm
kdelibs-devel-4.14.8-11.el7_7.i686.rpm
kdelibs-devel-4.14.8-11.el7_7.x86_64.rpm
noarch
kde-settings-19-23.10.el7_7.noarch.rpm
kde-settings-ksplash-19-23.10.el7_7.noarch.rpm
kde-settings-plasma-19-23.10.el7_7.noarch.rpm
kde-settings-pulseaudio-19-23.10.el7_7.noarch.rpm
qt-settings-19-23.10.el7_7.noarch.rpm
kde-settings-minimal-19-23.10.el7_7.noarch.rpm
kdelibs-apidocs-4.14.8-11.el7_7.noarch.rpm
– Scientific Linux Development Team