Vulnerabilities > KDE > Paste Applet

DATE CVE VULNERABILITY TITLE RISK
2020-02-11 CVE-2013-2213 Use of a Broken or Risky Cryptographic Algorithm vulnerability in KDE Paste Applet
The KRandom::random function in KDE Paste Applet after 4.10.5 in kdeplasma-addons uses the GNU C Library rand function's linear congruential generator, which makes it easier for context-dependent attackers to defeat cryptographic protection mechanisms by predicting the generator output.
local
low complexity
kde CWE-327
2.1
2020-02-11 CVE-2013-2120 Improper Authentication vulnerability in KDE Paste Applet
The %{password(...)} macro in pastemacroexpander.cpp in the KDE Paste Applet before 4.10.5 in kdeplasma-addons does not properly generate passwords, which allows context-dependent attackers to bypass authentication via a brute-force attack.
local
low complexity
kde CWE-287
2.1