Updated sddm package fixes a security vulnerability
Publication date: 10 Nov 2020Type: security
Affected Mageia releases : 7
CVE: CVE-2020-28049
Description
Fabian Vogt discovered a flaw in sddm before 0.19.0. A local attacker can take advantage of a race condition when creating the Xauthority file to escalate privileges (CVE-2020-28049).
References
SRPMS
7/core
- sddm-0.18.1-3.1.mga7