AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2016-3100

HIGH · CVSS 8.4 EPSS 0.40%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2016-07-13 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2016-3100
Severity
HIGH
CVSS
8.4
EPSS
0.40%

Original NVD Description

kinit in KDE Frameworks before 5.23.0 uses weak permissions (644) for /tmp/xauth-xxx-_y, which allows local users to obtain X11 cookies of other users and consequently capture keystrokes and possibly gain privileges by reading the file.