Vulnerabilities > CVE-2008-4382 - Resource Management Errors vulnerability in KDE Konqueror 3.5.9

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
PARTIAL
network
low complexity
kde
CWE-399

Summary

Konqueror in KDE 3.5.9 allows remote attackers to cause a denial of service (application crash) via Javascript that calls the alert function with a URL-encoded string of a large number of invalid characters.

Vulnerable Configurations

Part Description Count
Application
Kde
1

Common Weakness Enumeration (CWE)

Statements

contributorJoshua Bressers
lastmodified2017-08-07
organizationRed Hat
statementWe do not consider a crash of a client application such as Konqueror to be a security issue.