Vulnerabilities > KDE > KDE Workspace > 4.2.0

DATE CVE VULNERABILITY TITLE RISK
2019-12-10 CVE-2013-4133 Improper Resource Shutdown or Release vulnerability in multiple products
kde-workspace before 4.10.5 has a memory leak in plasma desktop
network
low complexity
kde debian CWE-404
7.8
2015-01-26 CVE-2015-1308 Information Exposure vulnerability in KDE Kde-Workspace and Plasma-Workspace
kde-workspace 4.2.0 and plasma-workspace before 5.1.95 allows remote attackers to obtain input events, and consequently obtain passwords, by leveraging access to the X server when the screen is locked.
network
kde CWE-200
4.3
2014-12-06 CVE-2014-8651 Permissions, Privileges, and Access Controls vulnerability in KDE Kde-Workspace and Plasma-Desktop
The KDE Clock KCM policykit helper in kde-workspace before 4.11.14 and plasma-desktop before 5.1.1 allows local users to gain privileges via a crafted ntpUtility (ntp utility name) argument.
local
low complexity
kde CWE-264
7.2
2013-09-16 CVE-2013-4132 Cryptographic Issues vulnerability in multiple products
KDE-Workspace 4.10.5 and earlier does not properly handle the return value of the glibc 2.17 crypt and pw_encrypt functions, which allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via (1) an invalid salt or a (2) DES or (3) MD5 encrypted password, when FIPS-140 is enable, to KDM or an (4) invalid password to KCheckPass.
network
low complexity
kde opensuse CWE-310
5.0