kwallet-pam in KDE KWallet before 5.12.6 allows local users to obtain ownership of arbitrary files via a symlink attack.
The KDE Clock KCM policykit helper in kde-workspace before 4.11.14 and plasma-desktop before 5.1.1 allows local users to gain privileges via a crafted ntpUtility (ntp utility name) argument.
Turning all screens off in Plasma-workspace and kscreenlocker while the lock screen is shown can result in the screen being unlocked when turning a screen on again.
kde-workspace 4.2.0 and plasma-workspace before 5.1.95 allows remote attackers to obtain input events, and consequently obtain passwords, by leveraging access to the X server when the screen is locked.
plasma-workspace before 5.1.95 allows remote attackers to obtain passwords via a Trojan horse Look and Feel package.
End of life: 2/11/2022, End of support: 6/4/2020, Latest version: 5.18.8
End of life: 2/11/2022, End of support: 6/4/2020, Latest version: 5.18.8
End of life: 6/18/2024, End of support: 6/18/2024, Latest version: 6.0.5
End of life: 6/18/2024, End of support: 6/18/2024, Latest version: 6.0.5
End of life: 2/14/2023, End of support: 2/14/2023, Latest version: 5.26.5
End of life: 2/14/2023, End of support: 2/14/2023, Latest version: 5.26.5
End of life: 10/8/2024, End of support: 10/8/2024, Latest version: 6.1.5
End of life: 10/8/2024, End of support: 10/8/2024, Latest version: 6.1.5
End of life: 2/11/2025, End of support: 2/11/2025, Latest version: 6.2.5
End of life: 2/11/2025, End of support: 2/11/2025, Latest version: 6.2.5