|
Konqueror Exposure of Username and Password
|
|
Secunia Advisory:
|
SA9385
|
|
|
Release Date:
|
2003-07-29
|
|
Last Update:
|
2003-07-31
|
|
Popularity:
|
11,513 views
|
|
|
Critical:
|
 Less critical
|
|
Impact:
|
Exposure of sensitive information
|
|
Where:
|
From remote
|
|
Solution Status:
|
Vendor Patch
|
|
| Software: | KDE 2.x KDE 3.x Konqueror Embedded
|
|
|
Secunia CVSS-2 Score:
|
Available in Secunia business solutions
|
|
|
Subscribe:
|
Instant alerts on relevant vulnerabilities
|
|
| Advisory Content (Page 2 of 3) | [ 1 ] [ 2 ] [ 3 ] | |
|
Solution: KDE version 3.1.3 is not vulnerable.
Patches for older releases are available:
Konqueror embedded:
http://devel-home.kde.org/~hausmann/snapshots/
30dc3e109124e8532c7c0ed6ad3ec6fb konqueror-embedded-snapshot-20030705.tar.gz
A patch for KDE 2.2.2 is available from:
ftp://ftp.kde.org/pub/kde/security_patches
90d0a6064ee1ba99347b55e303081cd5 post-2.2.2-kdelibs-http.patch
Patches for KDE 3.0.5b are available from:
ftp://ftp.kde.org/pub/kde/security_patches
a2bd79b4a78aa7d51afe01c47a8ab6d2 post-3.0.5b-kdelibs-http.patch
a5ed29d49c07aa5a2c63b9bbaec0e7b2 post-3.0.5b-kdelibs-khtml.patch
Patches for KDE 3.1.2 are available from:
ftp://ftp.kde.org/pub/kde/security_patches
8ebafe8432e92cb4e878a37153cf12a4 post-3.1.2-kdelibs-http.patch
6f27515ca22198b4060f4a4fe3c3a6b1 post-3.1.2-kdelibs-khtml.patch
Provided and/or discovered by: George Staikos
Original Advisory: http://www.kde.org/info/security/advisory-20030729-1.txt
Change Page: [ 1 ] [ 2 ] [ 3 ]
|
|
|
Track this Secunia Advisory
|
Customers of the Secunia Vulnerability Intelligence solutions will automatically receive updates when new information regarding this advisory is released.
Read more about our Vulnerability Intelligence solutions and what they can do for you and your company.
|
|
|
About this Secunia Advisory
|
Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.
Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.
|