| Name | CVE-2006-2449 | 
| Description | KDE Display Manager (KDM) in KDE 3.2.0 up to 3.5.3 allows local users to read arbitrary files via a symlink attack related to the session type for login. | 
| Source | CVE (at NVD; CERT, ENISA, LWN, oss-sec, fulldisc, Debian ELTS, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more) | 
| References | DSA-1156 | 
| Debian Bugs | 374002 | 
The information below is based on the following data on fixed versions.
| Package | Type | Release | Fixed Version | Urgency | Origin | Debian Bugs | 
|---|---|---|---|---|---|---|
| kdebase | source | sarge | 4:3.3.2-1sarge3 | DSA-1156 | ||
| kdebase | source | (unstable) | 4:3.5.2-2 | medium | 374002 |