Kde

Konqueror

33 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 3.61%
  • Veröffentlicht 20.07.2009 18:30:01
  • Zuletzt bearbeitet 09.04.2025 00:30:58

KDE Konqueror allows remote attackers to cause a denial of service (memory consumption) via a large integer value for the length property of a Select object, a related issue to CVE-2009-1692.

  • EPSS 2.3%
  • Veröffentlicht 24.12.2008 18:29:15
  • Zuletzt bearbeitet 09.04.2025 00:30:58

The HTML parser in KDE Konqueror 3.5.9 allows remote attackers to cause a denial of service (application crash) via (1) a long COLOR attribute in an HR element; or a long (a) BGCOLOR or (b) BORDERCOLOR attribute in a (2) TABLE, (3) TD, or (4) TR elem...

  • EPSS 8.51%
  • Veröffentlicht 22.12.2008 15:30:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

HTMLTokenizer::scriptHandler in Konqueror in KDE 3.5.9 and 3.5.10 allows remote attackers to cause a denial of service (application crash) via an invalid document.load call that triggers use of a deleted object. NOTE: some of these details are obtai...

  • EPSS 0.47%
  • Veröffentlicht 02.10.2008 18:18:05
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Konqueror in KDE 3.5.9 allows remote attackers to cause a denial of service (application crash) via Javascript that calls the alert function with a URL-encoded string of a large number of invalid characters.

  • EPSS 0.21%
  • Veröffentlicht 28.12.2007 21:46:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

KDE Konqueror 3.5.5 and 3.95.00, when a user accepts an SSL server certificate on the basis of the CN domain name in the DN field, regards the certificate as also accepted for all domain names in subjectAltName:dNSName fields, even though these field...

Exploit
  • EPSS 2.62%
  • Veröffentlicht 15.11.2007 22:46:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

KDE Konqueror 3.5.6 and earlier allows remote attackers to cause a denial of service (crash) via large HTTP cookie parameters.

Exploit
  • EPSS 2.62%
  • Veröffentlicht 08.08.2007 22:17:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Unspecified vulnerability in KDE Konqueror 3.5.7 and earlier allows remote attackers to cause a denial of service (failed assertion and application crash) via certain malformed HTML, as demonstrated by a document containing TEXTAREA, BUTTON, BR, BDO,...

  • EPSS 1.8%
  • Veröffentlicht 08.08.2007 21:17:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Visual truncation vulnerability in KDE Konqueror 3.5.7 allows remote attackers to spoof the URL address bar via an http URI with a large amount of whitespace in the user/password portion.

  • EPSS 0.8%
  • Veröffentlicht 08.08.2007 21:17:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

KDE Konqueror 3.5.7 allows remote attackers to spoof the URL address bar by calling setInterval with a small interval and changing the window.location property.

  • EPSS 1.14%
  • Veröffentlicht 17.07.2007 01:30:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

konqueror/konq_combo.cc in Konqueror 3.5.7 allows remote attackers to spoof the data: URI scheme in the address bar via a long URI with trailing whitespace, which prevents the beginning of the URI from being displayed.