Secunia Logo  


Secunia PSI WorldMap
 
Konqueror Exposure of Username and Password
Secunia Advisory: SA9385
Release Date: 2003-07-29
Last Update: 2003-07-31
Popularity: 11,513 views

Critical:
Less critical
Impact: Exposure of sensitive information
Where: From remote
Solution Status: Vendor Patch

Software:KDE 2.x
KDE 3.x
Konqueror Embedded

Secunia CVSS-2 Score: Available in Secunia business solutions

Subscribe: Instant alerts on relevant vulnerabilities


Advisory Content (Page 2 of 3)[ 1 ] [ 2 ] [ 3 ]

Solution:
KDE version 3.1.3 is not vulnerable.

Patches for older releases are available:

Konqueror embedded:
http://devel-home.kde.org/~hausmann/snapshots/
30dc3e109124e8532c7c0ed6ad3ec6fb konqueror-embedded-snapshot-20030705.tar.gz

A patch for KDE 2.2.2 is available from:
ftp://ftp.kde.org/pub/kde/security_patches
90d0a6064ee1ba99347b55e303081cd5 post-2.2.2-kdelibs-http.patch

Patches for KDE 3.0.5b are available from:
ftp://ftp.kde.org/pub/kde/security_patches
a2bd79b4a78aa7d51afe01c47a8ab6d2 post-3.0.5b-kdelibs-http.patch
a5ed29d49c07aa5a2c63b9bbaec0e7b2 post-3.0.5b-kdelibs-khtml.patch

Patches for KDE 3.1.2 are available from:
ftp://ftp.kde.org/pub/kde/security_patches
8ebafe8432e92cb4e878a37153cf12a4 post-3.1.2-kdelibs-http.patch
6f27515ca22198b4060f4a4fe3c3a6b1 post-3.1.2-kdelibs-khtml.patch

Provided and/or discovered by:
George Staikos

Original Advisory:
http://www.kde.org/info/security/advisory-20030729-1.txt

Change Page:
[ 1 ] [ 2 ] [ 3 ]



Track this Secunia Advisory
Customers of the Secunia Vulnerability Intelligence solutions will automatically receive updates when new information regarding this advisory is released.

Read more about our Vulnerability Intelligence solutions and what they can do for you and your company.

About this Secunia Advisory
Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.

Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.
  
Latest Advisories

Send Feedback to Secunia
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.

Ideas, suggestions, and other feedback are most welcome.

Most Popular - 3 Hours

1. Adobe Reader/Acrobat Code Execution Vulnerability // 354 views
2. Adobe Flash Player Multiple Vulnerabilities // 135 views
3. IBM DB2 Multiple Unspecified Vulnerabilities // 39 views
4. NetBiter Config Device Hostname Buffer Overflow Vulnerability // 28 views
5. Link Up Gold Cross-Site Request Forgery Vulnerability // 28 views
6. Internet Explorer Charset Inheritance Cross-Site Scripting Vulnerability // 28 views
7. Webmatic SQL Injection and Cross-Site Scripting Vulnerabilities // 26 views
8. Adobe Flash Player Multiple Vulnerabilities // 25 views
9. Sun Java JDK / JRE Multiple Vulnerabilities // 25 views
10. Adobe Reader/Acrobat Multiple Vulnerabilities // 25 views