Vulnerabilities > KDE > Low

DATE CVE VULNERABILITY TITLE RISK
2005-08-16 CVE-2005-2097 Remote Denial of Service vulnerability in XPDF Loca Table Verification
xpdf and kpdf do not properly validate the "loca" table in PDF files, which allows local users to cause a denial of service (disk consumption and hang) via a PDF file with a "broken" loca table, which causes a large temporary file to be created when xpdf attempts to reconstruct the information.
local
low complexity
kde xpdf
2.1
2005-05-02 CVE-2005-0365 Unspecified vulnerability in KDE 3.2.X/3.3.X
The dcopidlng script in KDE 3.2.x and 3.3.x creates temporary files with predictable filenames, which allows local users to overwrite arbitrary files via a symlink attack.
local
low complexity
kde
2.1
2005-05-02 CVE-2005-0396 Local Denial of Service vulnerability in KDE Dcopserver and Desktop Communication Protocol Daemon
Desktop Communication Protocol (DCOP) daemon, aka dcopserver, in KDE before 3.4 allows local users to cause a denial of service (dcopserver consumption) by "stalling the DCOP authentication process."
local
low complexity
kde
2.1
2005-01-10 CVE-2004-1171 KDE 3.2.x and 3.3.0 through 3.3.2, when saving credentials that are (1) manually entered by the user or (2) created by the SMB protocol handler, stores those credentials for plaintext in the user's .desktop file, which may be created with world-readable permissions, which could allow local users to obtain usernames and passwords for remote resources such as SMB shares.
local
low complexity
kde mandrakesoft redhat
2.1
1999-03-01 CVE-2000-0371 Unspecified vulnerability in KDE 1.1/1.1.1
The libmediatool library used for the KDE mediatool allows local users to create arbitrary files via a symlink attack.
local
high complexity
kde
1.2
1998-11-18 CVE-1999-0782 KDE kppp allows local users to create a directory in an arbitrary location via the HOME environmental variable.
local
low complexity
freebsd kde linux
2.1
1998-02-06 CVE-1999-1269 Unspecified vulnerability in KDE Beta 3 Initial
Screen savers in KDE beta 3 allows local users to overwrite arbitrary files via a symlink attack on the .kss.pid file.
local
low complexity
kde
2.1