Vulnerabilities > KDE > KDE > 3.0.3a

DATE CVE VULNERABILITY TITLE RISK
2012-11-11 CVE-2012-4514 Unspecified vulnerability in KDE
rendering/render_replaced.cpp in Konqueror in KDE before 4.9.3 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted web page, related to "trying to reuse a frame with a null part."
network
low complexity
kde
5.0
2003-10-06 CVE-2003-0692 Unspecified vulnerability in KDE
KDM in KDE 3.1.3 and earlier uses a weak session cookie generation algorithm that does not provide 128 bits of entropy, which allows attackers to guess session cookies via brute force methods and gain access to the user session.
network
low complexity
kde
7.5
2003-10-06 CVE-2003-0690 Unspecified vulnerability in KDE
KDM in KDE 3.1.3 and earlier does not verify whether the pam_setcred function call succeeds, which may allow attackers to gain root privileges by triggering error conditions within PAM modules, as demonstrated in certain configurations of the MIT pam_krb5 module.
network
low complexity
kde
critical
10.0
2003-05-05 CVE-2003-0204 Unspecified vulnerability in KDE
KDE 2 and KDE 3.1.1 and earlier 3.x versions allows attackers to execute arbitrary commands via (1) PostScript (PS) or (2) PDF files, related to missing -dPARANOIDSAFER and -dSAFER arguments when using the kghostview Ghostscript viewer.
network
low complexity
kde
7.5
2003-01-17 CVE-2002-1393 Unspecified vulnerability in KDE
Multiple vulnerabilities in KDE 2 and KDE 3.x through 3.0.5 do not quote certain parameters that are inserted into a shell command, which could allow remote attackers to execute arbitrary commands via (1) URLs, (2) filenames, or (3) e-mail addresses.
network
low complexity
kde
7.5
2002-11-29 CVE-2002-1247 Local Buffer Overflow vulnerability in KDE Network RESLISA LOGNAME
Buffer overflow in LISa allows local users to gain access to a raw socket via a long LOGNAME environment variable for the resLISa daemon.
local
low complexity
kde lisa
7.2
2002-10-28 CVE-2002-1224 Unspecified vulnerability in KDE
Directory traversal vulnerability in kpf for KDE 3.0.1 through KDE 3.0.3a allows remote attackers to read arbitrary files as the kpf user via a URL with a modified icon parameter.
network
low complexity
kde
5.0
2002-10-28 CVE-2002-1223 Denial-Of-Service vulnerability in KDE 1.1/3.0.3A
Buffer overflow in DSC 3.0 parser from GSview, as used in KGhostView in KDE 1.1 and KDE 3.0.3a, may allow attackers to cause a denial of service or execute arbitrary code via a modified .ps (PostScript) input file.
network
low complexity
kde
7.5