Security Advisory

CVE-2016-3100

8.4
HIGH

Vulnerability Description

kinit in KDE Frameworks before 5.23.0 uses weak permissions (644) for /tmp/xauth-xxx-_y, which allows local users to obtain X11 cookies of other users and consequently capture keystrokes and possibly gain privileges by reading the file.
Published Date July 13, 2016
Official Source NIST NVD Advisory