Vulnerabilities > KDE > Medium

DATE CVE VULNERABILITY TITLE RISK
2002-12-31 CVE-2002-2333 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in KDE
Buffer overflow in konqueror in KDE 2.1 through 3.0 and 3.0.2 allows remote attackers to cause a denial of service (crash) via an IMG tag with large width and height attributes.
network
low complexity
kde CWE-119
5.0
2002-10-28 CVE-2002-1224 Unspecified vulnerability in KDE
Directory traversal vulnerability in kpf for KDE 3.0.1 through KDE 3.0.3a allows remote attackers to read arbitrary files as the kpf user via a URL with a modified icon parameter.
network
low complexity
kde
5.0
2002-06-25 CVE-2002-0342 Denial Of Service vulnerability in KDE K-Mail 1.2
Kmail 1.2 on KDE 2.1.1 allows remote attackers to cause a denial of service (crash) via an email message whose body is approximately 55 K long.
network
low complexity
kde
5.0
2002-05-16 CVE-2002-0227 Denial of Service vulnerability in kicq 2.0.0b1 Invalid ICQ Packet
KICQ 2.0.0b1 allows remote attackers to cause a denial of service (crash) via a malformed message.
network
low complexity
kicq kde
5.0
2001-12-14 CVE-2001-1197 Unspecified vulnerability in KDE Kdeutils 2.2/2.2.2
klprfax_filter in KDE2 KDEUtils allows local users to overwrite arbitrary files via a symlink attack on the klprfax.filter temporary file.
local
low complexity
kde
4.6
2001-08-02 CVE-2001-0610 Local Security vulnerability in Linux
kfm as included with KDE 1.x can allow a local attacker to gain additional privileges via a symlink attack in the kfm cache directory in /tmp.
local
low complexity
kde suse
4.6
2000-01-04 CVE-1999-0735 Unspecified vulnerability in KDE K-Mail
KDE K-Mail allows local users to gain privileges via a symlink attack in temporary user directories.
local
low complexity
kde
4.6
1998-11-18 CVE-1999-0780 KDE klock allows local users to kill arbitrary processes by specifying an arbitrary PID in the .kss.pid file.
local
low complexity
freebsd kde linux
4.6
1998-07-11 CVE-1999-1270 Unspecified vulnerability in KDE 1.0
KMail in KDE 1.0 provides a PGP passphrase as a command line argument to other programs, which could allow local users to obtain the passphrase and compromise the PGP keys of other users by viewing the arguments via programs that list process information, such as ps.
local
low complexity
kde
4.6
1997-05-05 CVE-1999-1267 Unspecified vulnerability in KDE
KDE file manager (kfm) uses a TCP server for certain file operations, which allows remote attackers to modify arbitrary files by sending a copy command to the server.
network
low complexity
kde
5.0