CVE-2024-36041
published 2024-07-05CVE-2024-36041: KSmserver in KDE Plasma Workspace (aka plasma-workspace) before 5.27.11.1 and 6.x before 6.0.5.1 allows connections via ICE based purely on the host, i.e., all…
PriorityP344high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.29%
21.6th percentile
KSmserver in KDE Plasma Workspace (aka plasma-workspace) before 5.27.11.1 and 6.x before 6.0.5.1 allows connections via ICE based purely on the host, i.e., all local connections are accepted. This allows another user on the same machine to gain access to the session manager, e.g., use the session-restore feature to execute arbitrary code as the victim (on the next boot) via earlier use of the /tmp directory.
Affected
7 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | plasma-workspace | < plasma-workspace 4:5.27.5-2+deb12u2 (bookworm) | plasma-workspace 4:5.27.5-2+deb12u2 (bookworm) |
| kde | plasma-workspace | < 5.27.11.1 | 5.27.11.1 |
| kde | plasma-workspace | >= 0 < 4:5.20.5-6+deb11u1 | 4:5.20.5-6+deb11u1 |
| kde | plasma-workspace | >= 0 < 4:5.27.5-2+deb12u2 | 4:5.27.5-2+deb12u2 |
| kde | plasma-workspace | >= 0 < 4:5.27.11.1-1 | 4:5.27.11.1-1 |
| kde | plasma-workspace | >= 0 < 4:5.27.11.1-1 | 4:5.27.11.1-1 |
| kde | plasma-workspace | >= 6.0.0.0 < 6.0.5.1 | 6.0.5.1 |
CVSS provenance
nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv7.8HIGH
vendor_debian7.8HIGH
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-7xfq-9m67-9j5j: KSmserver in KDE Plasma Workspace (aka plasma-workspace) before 5
ghsa_unreviewed·2024-07-05
CVE-2024-36041 [HIGH] CWE-613 GHSA-7xfq-9m67-9j5j: KSmserver in KDE Plasma Workspace (aka plasma-workspace) before 5
KSmserver in KDE Plasma Workspace (aka plasma-workspace) before 5.27.11.1 and 6.x before 6.0.5.1 allows connections via ICE based purely on the host, i.e., all local connections are accepted. This allows another user on the same machine to gain access to the session manager, e.g., use the session-restore feature to execute arbitrary code as the victim (on the next boot) via earlier use of the /tmp directory.
OSV
CVE-2024-36041: KSmserver in KDE Plasma Workspace (aka plasma-workspace) before 5
osv·2024-07-05·CVSS 7.8
CVE-2024-36041 [HIGH] CVE-2024-36041: KSmserver in KDE Plasma Workspace (aka plasma-workspace) before 5
KSmserver in KDE Plasma Workspace (aka plasma-workspace) before 5.27.11.1 and 6.x before 6.0.5.1 allows connections via ICE based purely on the host, i.e., all local connections are accepted. This allows another user on the same machine to gain access to the session manager, e.g., use the session-restore feature to execute arbitrary code as the victim (on the next boot) via earlier use of the /tmp directory.
Ubuntu
Plasma Workspace vulnerability
vendor_ubuntu·2024-06-26
CVE-2024-36041 Plasma Workspace vulnerability
Title: Plasma Workspace vulnerability
Summary: plasma-workspace would allow unintended access to the session manager.
Fabian Vogt discovered that Plasma Workspace incorrectly handled
connections via ICE. A local attacker could possibly use this issue to
gain access to another user's session manager and execute arbitrary code.
Instructions: After a standard system update you need to reboot your computer to make all
the necessary changes.
Red Hat
kernel: RDMA/cma: Fix kmemleak in rdma_core observed during blktests nvme/rdma use siw
vendor_redhat·2024-06-19·CVSS 5.5
CVE-2024-38539 [MEDIUM] CWE-402 kernel: RDMA/cma: Fix kmemleak in rdma_core observed during blktests nvme/rdma use siw
kernel: RDMA/cma: Fix kmemleak in rdma_core observed during blktests nvme/rdma use siw
In the Linux kernel, the following vulnerability has been resolved:
RDMA/cma: Fix kmemleak in rdma_core observed during blktests nvme/rdma use siw
When running blktests nvme/rdma, the following kmemleak issue will appear.
kmemleak: Kernel memory leak detector initialized (mempool available:36041)
kmemleak: Automatic memory scanning thread started
kmemleak: 2 new suspected memory leaks (see /sys/kernel/debug/kmemleak)
kmemleak: 8 new suspected memory leaks (see /sys/kernel/debug/kmemleak)
kmemleak: 17 new suspected memory leaks (see /sys/kernel/debug/kmemleak)
kmemleak: 4 new suspected memory leaks (see /sys/kernel/debug/kmemleak)
unreferenced object 0xffff88855da53400 (size 192):
comm "rdma", pid 10630,
Debian
CVE-2024-36041: plasma-workspace - KSmserver in KDE Plasma Workspace (aka plasma-workspace) before 5.27.11.1 and 6....
vendor_debian·2024·CVSS 7.8
CVE-2024-36041 [HIGH] CVE-2024-36041: plasma-workspace - KSmserver in KDE Plasma Workspace (aka plasma-workspace) before 5.27.11.1 and 6....
KSmserver in KDE Plasma Workspace (aka plasma-workspace) before 5.27.11.1 and 6.x before 6.0.5.1 allows connections via ICE based purely on the host, i.e., all local connections are accepted. This allows another user on the same machine to gain access to the session manager, e.g., use the session-restore feature to execute arbitrary code as the victim (on the next boot) via earlier use of the /tmp directory.
Scope: local
bookworm: resolved (fixed in 4:5.27.5-2+deb12u2)
bullseye: resolved (fixed in 4:5.20.5-6+deb11u1)
forky: resolved (fixed in 4:5.27.11.1-1)
sid: resolved (fixed in 4:5.27.11.1-1)
trixie: resolved (fixed in 4:5.27.11.1-1)
No detection rules found.
No public exploits indexed.
https://github.com/KDE/plasma-workspace/tagshttps://invent.kde.org/plasma/plasma-workspace/https://kde.org/info/security/advisory-20240531-1.txthttps://www.x.org/releases/X11R7.7/doc/libSM/xsmp.htmlhttps://github.com/KDE/plasma-workspace/tagshttps://invent.kde.org/plasma/plasma-workspace/https://kde.org/info/security/advisory-20240531-1.txthttps://lists.debian.org/debian-lts-announce/2024/06/msg00002.htmlhttps://lists.fedoraproject.org/archives/list/[email protected]/message/43YGQJGB5I33UBRY2OHXTPXIEESZLZ6N/https://lists.fedoraproject.org/archives/list/[email protected]/message/DNOZWSWXAR6EM3VIUJRSAI3L4QPURQPC/https://www.x.org/releases/X11R7.7/doc/libSM/xsmp.html
2024-07-05
Published