Vulnerabilities > CVE-2006-2933

047910
CVSS 4.6 - MEDIUM
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
local
low complexity
kde
redhat
nessus

Summary

kdesktop_lock in kdebase before 3.1.3-5.11 for KDE in Red Hat Enterprise Linux (RHEL) 3 does not properly terminate, which can prevent the screensaver from activating or prevent users from manually locking the desktop.

Vulnerable Configurations

Part Description Count
OS
Kde
2
OS
Redhat
4

Nessus

  • NASL familyOracle Linux Local Security Checks
    NASL idORACLELINUX_ELSA-2006-0576.NASL
    descriptionFrom Red Hat Security Advisory 2006:0576 : Updated kdebase packages that resolve a security issue are now available. This update has been rated as having moderate security impact by the Red Hat Security Response Team. The kdebase packages provide the core applications for KDE, the K Desktop Environment. A flaw was found in KDE where the kdesktop_lock process sometimes failed to terminate properly. This issue could either block the user
    last seen2020-06-01
    modified2020-06-02
    plugin id67396
    published2013-07-12
    reporterThis script is Copyright (C) 2013-2019 and is owned by Tenable, Inc. or an Affiliate thereof.
    sourcehttps://www.tenable.com/plugins/nessus/67396
    titleOracle Linux 3 : kdebase (ELSA-2006-0576)
  • NASL familyCentOS Local Security Checks
    NASL idCENTOS_RHSA-2006-0576.NASL
    descriptionUpdated kdebase packages that resolve a security issue are now available. This update has been rated as having moderate security impact by the Red Hat Security Response Team. The kdebase packages provide the core applications for KDE, the K Desktop Environment. A flaw was found in KDE where the kdesktop_lock process sometimes failed to terminate properly. This issue could either block the user
    last seen2020-06-01
    modified2020-06-02
    plugin id22103
    published2006-07-28
    reporterThis script is Copyright (C) 2006-2019 and is owned by Tenable, Inc. or an Affiliate thereof.
    sourcehttps://www.tenable.com/plugins/nessus/22103
    titleCentOS 3 : kdebase (CESA-2006:0576)
  • NASL familyRed Hat Local Security Checks
    NASL idREDHAT-RHSA-2006-0576.NASL
    descriptionUpdated kdebase packages that resolve a security issue are now available. This update has been rated as having moderate security impact by the Red Hat Security Response Team. The kdebase packages provide the core applications for KDE, the K Desktop Environment. A flaw was found in KDE where the kdesktop_lock process sometimes failed to terminate properly. This issue could either block the user
    last seen2020-06-01
    modified2020-06-02
    plugin id22111
    published2006-07-28
    reporterThis script is Copyright (C) 2006-2019 and is owned by Tenable, Inc. or an Affiliate thereof.
    sourcehttps://www.tenable.com/plugins/nessus/22111
    titleRHEL 3 : kdebase (RHSA-2006:0576)

Oval

accepted2013-04-29T04:06:31.130-04:00
classvulnerability
contributors
  • nameAharon Chernin
    organizationSCAP.com, LLC
  • nameDragos Prisaca
    organizationG2, Inc.
definition_extensions
  • commentThe operating system installed on the system is Red Hat Enterprise Linux 3
    ovaloval:org.mitre.oval:def:11782
  • commentCentOS Linux 3.x
    ovaloval:org.mitre.oval:def:16651
descriptionkdesktop_lock in kdebase before 3.1.3-5.11 for KDE in Red Hat Enterprise Linux (RHEL) 3 does not properly terminate, which can prevent the screensaver from activating or prevent users from manually locking the desktop.
familyunix
idoval:org.mitre.oval:def:10535
statusaccepted
submitted2010-07-09T03:56:16-04:00
titlekdesktop_lock in kdebase before 3.1.3-5.11 for KDE in Red Hat Enterprise Linux (RHEL) 3 does not properly terminate, which can prevent the screensaver from activating or prevent users from manually locking the desktop.
version26

Redhat

advisories
rhsa
idRHSA-2006:0576
rpms
  • kdebase-6:3.1.3-5.11
  • kdebase-debuginfo-6:3.1.3-5.11
  • kdebase-devel-6:3.1.3-5.11