Secunia Logo
Netsikker nu! 2008
 
Mandriva update for kdelibs
Secunia Advisory: SA24705
Release Date: 2007-04-04
Popularity: 4,218 views

Critical:
Less critical
Impact: Cross Site Scripting
Where: From remote
Solution Status: Vendor Patch

OS:Mandriva Linux 2007.0

Subscribe: Instant alerts on relevant vulnerabilities

CVE reference:CVE-2007-0242


Description:
Mandriva has issued an update for kdelibs. This fixes a vulnerability, which potentially can be exploited by malicious people to conduct cross-site scripting attacks in applications using the library.

For more information:
SA24727

Solution:
Apply updated packages.

-- Mandriva Linux 2007 --

0aa169f71ee453bfae98225220c331cc 2007.0/i586/kdelibs-common-3.5.4-19.5mdv2007.0.i586.rpm
540a3bc9d82874b836b30a6948ef3bc9 2007.0/i586/kdelibs-devel-doc-3.5.4-19.5mdv2007.0.i586.rpm
825e626133ee2026b57a734d4afa8b44 2007.0/i586/libkdecore4-3.5.4-19.5mdv2007.0.i586.rpm
506795606555cd7ece65961e2a9b2b3a 2007.0/i586/libkdecore4-devel-3.5.4-19.5mdv2007.0.i586.rpm
75268625fe932b3031f10b431263c4a2
2007.0/SRPMS/kdelibs-3.5.4-19.5mdv2007.0.src.rpm

-- Mandriva Linux 2007/X86_64 --

1e3ce972420dfd5fa9f59f7488aad8ec 2007.0/x86_64/kdelibs-common-3.5.4-19.5mdv2007.0.x86_64.rpm
5dd0d9118284bed00433f49758507199 2007.0/x86_64/kdelibs-devel-doc-3.5.4-19.5mdv2007.0.x86_64.rpm
59e713d7e771adc76c681a748661f7df 2007.0/x86_64/lib64kdecore4-3.5.4-19.5mdv2007.0.x86_64.rpm
0c927e5eeaf866777896e3931dbdc8a1 2007.0/x86_64/lib64kdecore4-devel-3.5.4-19.5mdv2007.0.x86_64.rpm
75268625fe932b3031f10b431263c4a2
2007.0/SRPMS/kdelibs-3.5.4-19.5mdv2007.0.src.rpm

Original Advisory:
http://www.mandriva.com/security/advisories?name=MDKSA-2007:076

Other References:
SA24727:
http://secunia.com/advisories/24727/


Track this Secunia Advisory
Customers of the Secunia Vulnerability Intelligence solutions will automatically receive updates when new information regarding this advisory is released.

Read more about our Vulnerability Intelligence solutions and what they can do for you and your company.

About this Secunia Advisory
Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.

Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.
  
Latest Advisories

Send Feedback to Secunia
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.

Ideas, suggestions, and other feedback are most welcome.

Most Popular - 3 Hours

1. chm2pdf Insecure Temporary Directories // 99 views
2. Joomla OwnBiblio Component "catid" SQL Injection // 96 views
3. GForge Multiple SQL Injection Vulnerabilities // 92 views
4. Joomla Mad4Joomla Mailforms Component "jid" SQL Injection // 85 views
5. Joomla Ignite Gallery Component "gallery" SQL Injection // 85 views
6. Debian update for mon // 83 views
7. MunzurSoft Wep Portal W3 "kat" SQL Injection Vulnerability // 81 views
8. NoticeWare Email Server POP3 Connections Denial of Service // 66 views
9. Apache Tomcat "RemoteFilterValve" Security Bypass Security Issue // 63 views
10. GuildFTPd "LIST" Processing Buffer Overflow Vulnerability // 47 views