CVE-2016-3100
published 2016-07-13CVE-2016-3100: kinit in KDE Frameworks before 5.23.0 uses weak permissions (644) for /tmp/xauth-xxx-_y, which allows local users to obtain X11 cookies of other users and…
PriorityP336high8.4CVSS 3.0
AVLACLPRNUINSUCHIHAH
EPSS
0.40%
32.2th percentile
kinit in KDE Frameworks before 5.23.0 uses weak permissions (644) for /tmp/xauth-xxx-_y, which allows local users to obtain X11 cookies of other users and consequently capture keystrokes and possibly gain privileges by reading the file.
Affected
4 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | kinit | < kinit 5.23.0-1 (bookworm) | kinit 5.23.0-1 (bookworm) |
| kde | kde_frameworks | <= 5.22.0 | — |
| opensuse | leap | — | — |
| opensuse | opensuse | — | — |
CVSS provenance
nvdv3.08.4HIGHCVSS:3.0/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvdv2.02.1LOWAV:L/AC:L/Au:N/C:P/I:N/A:N
osv8.4HIGH
vendor_debian8.4HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Debian
CVE-2016-3100: kinit - kinit in KDE Frameworks before 5.23.0 uses weak permissions (644) for /tmp/xauth...
vendor_debian·2016·CVSS 8.4
CVE-2016-3100 [HIGH] CVE-2016-3100: kinit - kinit in KDE Frameworks before 5.23.0 uses weak permissions (644) for /tmp/xauth...
kinit in KDE Frameworks before 5.23.0 uses weak permissions (644) for /tmp/xauth-xxx-_y, which allows local users to obtain X11 cookies of other users and consequently capture keystrokes and possibly gain privileges by reading the file.
Scope: local
bookworm: resolved (fixed in 5.23.0-1)
bullseye: resolved (fixed in 5.23.0-1)
forky: resolved (fixed in 5.23.0-1)
sid: resolved (fixed in 5.23.0-1)
trixie: resolved (fixed in 5.23.0-1)
GHSA
GHSA-8h23-v9w8-5prq: kinit in KDE Frameworks before 5
ghsa_unreviewed·2022-05-14
CVE-2016-3100 [HIGH] CWE-200 GHSA-8h23-v9w8-5prq: kinit in KDE Frameworks before 5
kinit in KDE Frameworks before 5.23.0 uses weak permissions (644) for /tmp/xauth-xxx-_y, which allows local users to obtain X11 cookies of other users and consequently capture keystrokes and possibly gain privileges by reading the file.
OSV
CVE-2016-3100: kinit in KDE Frameworks before 5
osv·2016-07-13·CVSS 8.4
CVE-2016-3100 [HIGH] CVE-2016-3100: kinit in KDE Frameworks before 5
kinit in KDE Frameworks before 5.23.0 uses weak permissions (644) for /tmp/xauth-xxx-_y, which allows local users to obtain X11 cookies of other users and consequently capture keystrokes and possibly gain privileges by reading the file.
No detection rules found.
No public exploits indexed.
http://lists.opensuse.org/opensuse-updates/2016-07/msg00001.htmlhttp://www.kde.com/announcements/kde-frameworks-5.23.0.phphttp://www.securityfocus.com/bid/91769https://bugs.kde.org/show_bug.cgi?id=358593https://bugs.kde.org/show_bug.cgi?id=363140https://quickgit.kde.org/?p=kinit.git&a=commitdiff&h=72f3702dbe6cf15c06dc13da2c99c864e9022a58https://quickgit.kde.org/?p=kinit.git&a=commitdiff&h=dece8fd89979cd1a86c03bcaceef6e9221e8d8cdhttps://www.kde.org/info/security/advisory-20160621-1.txthttp://lists.opensuse.org/opensuse-updates/2016-07/msg00001.htmlhttp://www.kde.com/announcements/kde-frameworks-5.23.0.phphttp://www.securityfocus.com/bid/91769https://bugs.kde.org/show_bug.cgi?id=358593https://bugs.kde.org/show_bug.cgi?id=363140https://quickgit.kde.org/?p=kinit.git&a=commitdiff&h=72f3702dbe6cf15c06dc13da2c99c864e9022a58https://quickgit.kde.org/?p=kinit.git&a=commitdiff&h=dece8fd89979cd1a86c03bcaceef6e9221e8d8cdhttps://www.kde.org/info/security/advisory-20160621-1.txt
2016-07-13
Published