|
|
Info |
Last Modified |
| about 1 year ago |
|
|
|
|
|
Description |
A remote overflow exists in KDE. "kjs" fails to perform correct boundary checking when decoding UTF8-encoded javascript resulting in a heap overflow. With a specially crafted request, an attacker can execute arbitreaty code resulting in a loss of integrity.
|
|
Classification |
Location:
Remote/Network Access Required
Attack Type:
Input Manipulation
Impact:
Loss of Integrity
Exploit:
Exploit Unknown
Disclosure:
OSVDB Verified
OSVDB:
Web Related
|
|
Solution |
Upgrade to the latest version for your distribution, as numerous vendors have reportedly fixed this vulnerability. In addition, the KDE project has released a patch for some versions.
|
|
Products |
|
KDE
 |
3.2.0 |
3.3.0 |
3.4.0 |
3.5.0 |
|
|
|
|
|
|
|
BlogsProvided by Technorati
|
None found at this time
|
|
|