CVE Vulnerabilities

CVE-2012-4515

Published: Nov 11, 2012 | Modified: Nov 12, 2012
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6.8 MEDIUM
AV:N/AC:M/Au:N/C:P/I:P/A:P
RedHat/V2
5.1 IMPORTANT
AV:N/AC:H/Au:N/C:P/I:P/A:P
RedHat/V3
Ubuntu
LOW

Use-after-free vulnerability in khtml/rendering/render_replaced.cpp in Konqueror in KDE 4.7.3, when the context menu is shown, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code by accessing an iframe when it is being updated.

Affected Software

Name Vendor Start Version End Version
Kde Kde 4.7.3 (including) 4.7.3 (including)
Kde-baseapps Ubuntu oneiric *
Kde-baseapps Ubuntu precise *
Kde-baseapps Ubuntu quantal *
Kde-baseapps Ubuntu raring *
Kde-baseapps Ubuntu saucy *
Kde-baseapps Ubuntu upstream *
Kde-baseapps Ubuntu utopic *
Kde-baseapps Ubuntu vivid *
Kde-baseapps Ubuntu wily *
Kde-baseapps Ubuntu yakkety *
Kdebase Ubuntu hardy *
Kdebase Ubuntu lucid *
Kdebase Ubuntu natty *
Kdebase Ubuntu upstream *

References