CVE-2012-3413
Publication date 19 July 2012
Last updated 24 July 2024
Ubuntu priority
The HTMLQuoteColorer::process function in messageviewer/htmlquotecolorer.cpp in KDE PIM 4.6 through 4.8 does not disable JavaScript, Java, and Plugins, which allows remote attackers to inject arbitrary web script or HTML via a crafted email.
Status
Package | Ubuntu Release | Status |
---|---|---|
kdepim | ||
Notes
Patch details
Package | Patch details |
---|---|
kdepim |
References
Related Ubuntu Security Notices (USN)
- USN-1512-1
- KDE PIM vulnerability
- 19 July 2012