CVE-2025-62876
BaseFortify
Publication date: 2025-11-12
Last updated on: 2025-11-17
Assigner: SUSE
Description
Description
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| lightdm-kde-greeter | lightdm-kde-greeter | * |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-250 | The product performs an operation at a privilege level that is higher than the minimum level required, which creates new weaknesses or amplifies the consequences of other weaknesses. |
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?
This vulnerability is an Execution with Unnecessary Privileges issue in lightdm-kde-greeter before version 6.0.4. It allows a user with the service user privileges to escalate their privileges to root, meaning they can gain full administrative control over the system.
How can this vulnerability impact me? :
The vulnerability can impact you by allowing an attacker or unauthorized user to gain root access from a lower privileged service user account. This can lead to full control over the affected system, potentially allowing them to modify system files, install malicious software, or disrupt system operations.