CVE Vulnerabilities

CVE-2006-0019

Published: Jan 20, 2006 | Modified: Oct 19, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

Heap-based buffer overflow in the encodeURI and decodeURI functions in the kjs JavaScript interpreter engine in KDE 3.2.0 through 3.5.0 allows remote attackers to execute arbitrary code via a crafted, UTF-8 encoded URI.

Affected Software

Name Vendor Start Version End Version
Kde Kde 3.2 (including) 3.2 (including)
Kde Kde 3.2.0 (including) 3.2.0 (including)
Kde Kde 3.2.0_beta1 (including) 3.2.0_beta1 (including)
Kde Kde 3.2.1 (including) 3.2.1 (including)
Kde Kde 3.2.2 (including) 3.2.2 (including)
Kde Kde 3.2.3 (including) 3.2.3 (including)
Kde Kde 3.2.x (including) 3.2.x (including)
Kde Kde 3.3 (including) 3.3 (including)
Kde Kde 3.3.0 (including) 3.3.0 (including)
Kde Kde 3.3.1 (including) 3.3.1 (including)
Kde Kde 3.3.2 (including) 3.3.2 (including)
Kde Kde 3.3.x (including) 3.3.x (including)
Kde Kde 3.4 (including) 3.4 (including)
Kde Kde 3.4.0 (including) 3.4.0 (including)
Kde Kde 3.4.1 (including) 3.4.1 (including)
Kde Kde 3.4.2 (including) 3.4.2 (including)
Kde Kde 3.5.0 (including) 3.5.0 (including)

References