Candidate: CVE-2015-0856 PublicDate: 2015-11-24 20:59:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-0856 Description: daemon/Greeter.cpp in sddm before 0.13.0 does not properly disable the KDE crash handler, which allows local users to gain privileges by crashing a greeter when using certain themes, as demonstrated by the plasma-workspace breeze theme. Ubuntu-Description: Notes: Bugs: Priority: low Discovered-by: Assigned-to: CVSS: Patches_sddm: upstream: https://github.com/sddm/sddm/commit/4cfed6b0a625593 upstream_sddm: released (0.13.0) precise_sddm: DNE precise/esm_sddm: DNE trusty_sddm: DNE trusty/esm_sddm: DNE vivid_sddm: ignored (reached end-of-life) vivid/stable-phone-overlay_sddm: DNE vivid/ubuntu-core_sddm: DNE wily_sddm: ignored (reached end-of-life) xenial_sddm: not-affected (0.13.0-1ubuntu5) yakkety_sddm: ignored (reached end-of-life) zesty_sddm: ignored (reached end-of-life) artful_sddm: ignored (reached end-of-life) bionic_sddm: not-affected (0.13.0-1ubuntu5) devel_sddm: not-affected (0.13.0-1ubuntu5)