Vulnerabilities > KDE > Kcheckpass > Medium

DATE CVE VULNERABILITY TITLE RISK
2012-01-06 CVE-2011-5054 Improper Authentication vulnerability in KDE Kcheckpass
kcheckpass passes a user-supplied argument to the pam_start function, often within a setuid environment, which allows local users to invoke any configured PAM stack, and possibly trigger unintended side effects, via an arbitrary valid PAM service name, a different vulnerability than CVE-2011-4122.
local
kde CWE-287
6.9