Security Advisory

CVE-2019-14744

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2019-08-07 14:30:35
Last updated 2024-08-05 00:26:38
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

In KDE Frameworks KConfig before 5.61.0, malicious desktop files and configuration files lead to code execution with minimal user interaction. This relates to libKF5ConfigCore.so, and the mishandling of .desktop and .directory files, as demonstrated by a shell command on an Icon line in a .desktop file.