Your submission was sent successfully! Close

Thank you for contacting us. A member of our team will be in touch shortly. Close

You have successfully unsubscribed! Close

Thank you for signing up for our newsletter!
In these regular emails you will find the latest updates about Ubuntu and upcoming events where you can meet our team.Close

Search CVE reports


Toggle filters

1 – 10 of 30 results


CVE-2012-4512

Low priority
Ignored

The CSS parser (khtml/css/cssparser.cpp) in Konqueror in KDE 4.7.3 allows remote attackers to cause a denial of service (crash) and possibly read memory via a crafted font face source, related to "type confusion."

2 affected packages

kde-baseapps, kdebase

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
kde-baseapps Not affected
kdebase Not in release
Show less packages

CVE-2013-4133

Negligible priority
Ignored

kde-workspace before 4.10.5 has a memory leak in plasma desktop

2 affected packages

kde-workspace, kdebase-workspace

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
kde-workspace
kdebase-workspace
Show less packages

CVE-2013-7252

Low priority
Ignored

kwalletd in KWallet before KDE Applications 14.12.0 uses Blowfish with ECB mode instead of CBC mode when encrypting the password store, which makes it easier for attackers to guess passwords via a codebook attack.

2 affected packages

kde-runtime, kdebase-runtime

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
kde-runtime
kdebase-runtime
Show less packages

CVE-2012-4515

Low priority
Ignored

Use-after-free vulnerability in khtml/rendering/render_replaced.cpp in Konqueror in KDE 4.7.3, when the context menu is shown, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code by...

2 affected packages

kde-baseapps, kdebase

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
kde-baseapps Not affected
kdebase Not in release
Show less packages

CVE-2012-4514

Low priority
Ignored

rendering/render_replaced.cpp in Konqueror in KDE before 4.9.3 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted web page, related to "trying to reuse a frame with a null part."

2 affected packages

kde-baseapps, kdebase

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
kde-baseapps Not affected
kdebase Not in release
Show less packages

CVE-2012-4513

Low priority
Ignored

khtml/imload/scaledimageplane.h in Konqueror in KDE 4.7.3 allows remote attackers to cause a denial of service (crash) and possibly read memory via large canvas dimensions, which leads to an unexpected sign extension and...

2 affected packages

kde-baseapps, kdebase

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
kde-baseapps Not affected
kdebase Not in release
Show less packages

CVE-2010-0436

Medium priority

Some fixes available 3 of 6

Race condition in backend/ctrl.c in KDM in KDE Software Compilation (SC) 2.2.0 through 4.4.2 allows local users to change the permissions of arbitrary files, and consequently gain privileges, by blocking the removal of a certain...

2 affected packages

kdebase, kdebase-workspace

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
kdebase
kdebase-workspace
Show less packages

CVE-2010-0923

Medium priority
Not affected

Race condition in workspace/krunner/lock/lockdlg.cc in the KRunner lock module in kdebase in KDE SC 4.4.0 allows physically proximate attackers to bypass KScreenSaver screen locking and access an unattended workstation by pressing...

1 affected packages

kdebase-workspace

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
kdebase-workspace
Show less packages

CVE-2009-2537

Low priority
Ignored

KDE Konqueror allows remote attackers to cause a denial of service (memory consumption) via a large integer value for the length property of a Select object, a related issue to CVE-2009-1692.

1 affected packages

kdebase

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
kdebase
Show less packages

CVE-2008-5712

Negligible priority
Ignored

The HTML parser in KDE Konqueror 3.5.9 allows remote attackers to cause a denial of service (application crash) via (1) a long COLOR attribute in an HR element; or a long (a) BGCOLOR or (b) BORDERCOLOR attribute in a (2) TABLE,...

1 affected packages

kdebase

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
kdebase
Show less packages