USN-8424-1: Ubuntu Kylin Software Center vulnerability
摘要
Ubuntu Kylin Software Center could be made to run programs as an administrator if it received specially crafted input via its D-Bus service.
正文
It was discovered that Ubuntu Kylin Software Center incorrectly handled user-supplied input in its D-Bus service. A local attacker could possibly use this issue to gain administrative privileges.
标签
- release:resolute
- USN
扩展字段
{
"guid": "https://ubuntu.com/security/notices/USN-8424-1",
"instructions": "In general, a standard system update will make all the necessary\nchanges.",
"raw_pub_date": "Thu, 11 Jun 2026 15:20:07 +0000",
"references": [
"https://launchpad.net/bugs/2154543"
],
"release_packages": {
"resolute": [
{
"description": "Software maintenance management tools",
"is_source": true,
"name": "ubuntu-kylin-software-center",
"version": "4.5.77.1ubuntu0.1"
},
{
"is_source": false,
"is_visible": true,
"name": "ubuntu-kylin-software-center",
"pocket": "security",
"source_link": "https://launchpad.net/ubuntu/+source/ubuntu-kylin-software-center",
"version": "4.5.77.1ubuntu0.1",
"version_link": "https://launchpad.net/ubuntu/+source/ubuntu-kylin-software-center/4.5.77.1ubuntu0.1"
}
]
},
"releases": [
{
"codename": "resolute",
"support_tag": "LTS",
"version": "26.04"
}
]
}