Konqueror in KDE 3.5.9 allows remote attackers to cause a denial of service (application crash) via Javascript that calls the alert function with a URL-encoded string of a large number of invalid characters.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Konqueror | Kde | 3.5.9 (including) | 3.5.9 (including) |
| Kdebase | Ubuntu | dapper | * |
| Kdebase | Ubuntu | devel | * |
| Kdebase | Ubuntu | feisty | * |
| Kdebase | Ubuntu | gutsy | * |
| Kdebase | Ubuntu | hardy | * |
| Kdebase | Ubuntu | intrepid | * |
| Kdebase | Ubuntu | jaunty | * |
| Kdebase | Ubuntu | upstream | * |