CNNVD-202512-728 Information

CNNVD ID

CNNVD-202512-728

CVE-2025-32898

  • CNNVD Published: 2025-12-05

Description (Chinese)

KDE Connect是KDE社区的一个连接手机和电脑的软件。 KDE Connect 2025-04-18之前版本存在安全特征问题漏洞,该漏洞源于验证码协议仅使用8个字符,可能导致暴力破解攻击。

Description (English)

KDE Connect is a software that connects mobile phones and computers to the KDE community. Prior to the version of KDE Connect 2025-04-18, there was a security feature loophole, which arose from the use of only eight characters in the authentication code protocol, which could lead to violent decomposition of the attack.

Hazard Level

High

Vulnerability Type

安全特征问题

Affected Vendor

KDE

Published

2025-12-05

Last Modified

2026-02-24

References

https://kde.org/info/security/advisory-20250418-3.txt https://kdeconnect.kde.org

Patch

https://kdeconnect.kde.org/download.html

Share on: