Vulnerabilities > CVE-2006-6660 - Denial Of Service vulnerability in KDE LibkHTML NodeType Function

047910
CVSS 4.3 - MEDIUM
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
PARTIAL
network
kde
exploit available

Summary

The nodeType function in KDE libkhtml 4.2.0 and earlier, as used by Konquerer, KMail, and other programs, allows remote attackers to cause a denial of service (crash) via malformed HTML tags, possibly involving a COL SPAN tag embedded in a RANGE tag.

Vulnerable Configurations

Part Description Count
Application
Kde
1

Exploit-Db

descriptionKDE LibkHTML 4.2 NodeType Function Denial Of Service Vulnerability. CVE-2006-6660. Dos exploit for linux platform
idEDB-ID:29296
last seen2016-02-03
modified2006-12-19
published2006-12-19
reporterFederico L. Bossi Bonin
sourcehttps://www.exploit-db.com/download/29296/
titleKDE LibkHTML 4.2 NodeType Function Denial of Service Vulnerability

Statements

contributorMark J Cox
lastmodified2007-02-02
organizationRed Hat
statementNot vulnerable. This issue did not affect the versions of KDE as shipped with Red Hat Enterprise Linux 2.1, 3, or 4.