CVE-2005-0754 Information

Description

Kommander in KDE 3.2 through KDE 3.4.0 executes data files without confirmation from the user which allows remote attackers to execute arbitrary code.

Reference

ftp://ftp.kde.org/pub/kde/security_patches/post-3.4.0-kdewebdev-kommander.diff http://marc.info/?l=bugtraq&m=111419664411051&w=2 http://secunia.com/advisories/15060 http://www.kde.org/info/security/advisory-20050420-1.txt http://www.securityfocus.com/bid/13313

Share on: