CVE-2020-27187
An attacker on the local machine can replace /etc/fstab, and execute mount and other partitioning related commands, while KDE Partition Manager is running. the mount command can then be used to gain full root privileges.
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (0.43%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
An issue was discovered in KDE Partition Manager 4.1.0 before 4.2.0. The kpmcore_externalcommand helper contains a logic flaw in which the service invoking D-Bus is not properly checked. An attacker on the local machine can replace /etc/fstab, and execute mount and other partitioning related commands, while KDE Partition Manager is running. the mount command can then be used to gain full root privileges.
- CVSS 3.1
- 7.8 HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
- EPSS
- 0.43% probability · 36th percentile
- CISA KEV
- Not listed
- Affected
- kde/partition manager
- Source
- cve@mitre.org
References
- https://bugzilla.redhat.com/show_bug.cgi?id=1890199Issue Tracking, Vendor Advisory
- https://github.com/KDE/partitionmanager/compare/v4.1.0...v4.2.0Release Notes, Third Party Advisory
- https://kde.org/info/security/advisory-20201017-1.txtPatch, Vendor Advisory
- https://security.gentoo.org/glsa/202011-03Third Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=1890199Issue Tracking, Vendor Advisory
- https://github.com/KDE/partitionmanager/compare/v4.1.0...v4.2.0Release Notes, Third Party Advisory
- https://kde.org/info/security/advisory-20201017-1.txtPatch, Vendor Advisory
- https://security.gentoo.org/glsa/202011-03Third Party Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.