[kde-freebsd] ports/162735: [patch] privilege escalation with x11/kde4-workspace and openpam

rakuco at FreeBSD.org rakuco at FreeBSD.org
Mon Dec 12 21:20:47 UTC 2011


Synopsis: [patch] privilege escalation with x11/kde4-workspace and openpam

State-Changed-From-To: open->closed
State-Changed-By: rakuco
State-Changed-When: Mon Dec 12 21:20:46 UTC 2011
State-Changed-Why: 
According to security at kde.org, the MITRE CVE Numbering Authority has
accepted KDE's dispute and kcheckpass is no longer listed as a
vulnerable product. This, with ossi's refusal to add this kind of patch
to kcheckpass, makes it more likely for us to rely on openpam being a
good citizen and properly validating input. Thanks for the effort, but I
don't think we should add this patch to the port.

http://www.freebsd.org/cgi/query-pr.cgi?pr=162735


More information about the kde-freebsd mailing list