Advisories ยป MGASA-2020-0412

Updated sddm package fixes a security vulnerability

Publication date: 10 Nov 2020
Modification date: 10 Nov 2020
Type: security
Affected Mageia releases : 7
CVE: CVE-2020-28049

Description

Fabian Vogt discovered a flaw in sddm before 0.19.0. A local attacker can take
advantage of a race condition when creating the Xauthority file to escalate
privileges (CVE-2020-28049).
                

References

SRPMS

7/core