Search:     Advanced search
server monitoring

USN322-1 : Konqueror vulnerability

Article ID: 27900
Last updated: 27 Jan, 2009
Views: 362
Posted: 22 Jan, 2009
by: Tech Pubs S.
Updated: 27 Jan, 2009
by: Tech Pubs S.

USN322-1 : Konqueror vulnerability

Ubuntu Security Notice (C) 2007 Canonical, Inc. / NASL script (C) 2007 Tenable Network Security, Inc.

FamilyUbuntu Local Security Checks
Plugin ID27900
Bugtraq ID
CVE IDCVE-2006-3672

Description:

Synopsis :

These remote packages are missing security patches :
- kdelibs
- kdelibs-bin
- kdelibs-data
- kdelibs-dbg
- kdelibs4
- kdelibs4-dev
- kdelibs4-doc
- kdelibs4c2
- kdelibs4c2-dbg
- kdelibs4c2a


Description :

A Denial of Service vulnerability has been reported in the replaceChild()
method in KDEs DOM handler. A malicious remote web page could exploit
this to cause Konqueror to crash.

Solution :

Upgrade to :
- kdelibs-3.5.2-0ubuntu18.1 (Ubuntu 6.06)
- kdelibs-bin-3.5.2-0ubuntu18.1 (Ubuntu 6.06)
- kdelibs-data-3.5.2-0ubuntu18.1 (Ubuntu 6.06)
- kdelibs-dbg-3.5.2-0ubuntu18.1 (Ubuntu 6.06)
- kdelibs4-3.4.0-0ubuntu3.6 (Ubuntu 5.04)
- kdelibs4-dev-3.5.2-0ubuntu18.1 (Ubuntu 6.06)
- kdelibs4-doc-3.5.2-0ubuntu18.1 (Ubuntu 6.06)
- kdelibs4c2-3.4.3-0ubuntu2.1 (Ubuntu 5.10)
- kdelibs4c2-dbg-3.4.3-0ubuntu2.1 (Ubuntu 5.10)
- kdelibs4c2a-3.5.2-0ubuntu18.1 (Ubuntu 6.06)



Risk factor : High
This article was:   Helpful | Not Helpful
Prev   Next
USN135-1 : gdb vulnerabilities     USN50-1 : cupsys vulnerabilities