İçeriğe atla
Noroxi

KDE kayıtları

kde üreticisine ait 198 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
37
Düzeltme kaydı olan
%56,1
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

198 kayıt
  • CVE-2004-0888
    43Planlayın

    Multiple integer overflows in xpdf 2.0 and 3.0, and other packages that use xpdf code such as CUPS, gpdf, and kdegraphics, allow remote atta

    KritikCVSS 10,0İstismar yokEPSS %10

    kde · koffice27 Oca 2005

  • CVE-2004-0889
    42Planlayın

    Multiple integer overflows in xpdf 3.0, and other packages that use xpdf code such as CUPS, allow remote attackers to cause a denial of serv

    KritikCVSS 10,0İstismar yokEPSS %6

    xpdf · xpdf27 Oca 2005

  • CVE-2005-0011
    41Planlayın

    Multiple vulnerabilities in fliccd, when installed setuid root as part of the kdeedu Kstars support for Instrument Neutral Distributed Inter

    KritikCVSS 10,0İstismar yokEPSS %5

    kde · kde2 May 2005

  • CVE-2005-3625
    41Planlayın

    Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others, allows attackers to cause a denial

    KritikCVSS 10,0İstismar yokEPSS %4

    libextractor · libextractor31 Ara 2005

  • CVE-2003-0690
    41Planlayın

    KDM in KDE 3.1.3 and earlier does not verify whether the pam_setcred function call succeeds, which may allow attackers to gain root privileg

    KritikCVSS 10,0İstismar yokEPSS %3

    kde · kde6 Eki 2003

  • CVE-2009-3608
    40Planlayın

    Integer overflow in the ObjectStream::ObjectStream function in XRef.cc in Xpdf 3.x before 3.02pl4 and Poppler before 0.12.1, as used in GPdf

    KritikCVSS 9,3İstismar yokEPSS %10

    poppler · poppler21 Eki 2009

  • CVE-2009-3604
    40Planlayın

    The Splash::drawImage function in Splash.cc in Xpdf 2.x and 3.x before 3.02pl4, and Poppler 0.x, as used in GPdf and kdegraphics KPDF, does

    KritikCVSS 9,3İstismar yokEPSS %9

    kde · kpdf21 Eki 2009

  • CVE-2009-3606
    40Planlayın

    Integer overflow in the PSOutputDev::doImageL1Sep function in Xpdf before 3.02pl4, and Poppler 0.x, as used in kdegraphics KPDF, might allow

    KritikCVSS 9,3İstismar yokEPSS %9

    poppler · poppler21 Eki 2009

  • CVE-2006-3742
    40Planlayın

    The KDE PAM configuration shipped with Fedora Core 5 causes KDM passwords to be cached, which allows attackers to login without a password b

    KritikCVSS 10,0İstismar yokEPSS %1

    kde · kdebase6 Eyl 2006

  • CVE-2004-1125
    39İzleyin

    Buffer overflow in the Gfx::doImage function in Gfx.cc for xpdf 3.00, and other products that share code such as tetex-bin and kpdf in KDE 3

    KritikCVSS 9,3İstismar yokEPSS %7

    xpdf · xpdf10 Oca 2005

  • CVE-2009-2896
    39İzleyin

    Buffer overflow in KMplayer 2.9.4.1433 and earlier allows remote attackers to cause a denial of service (application crash) or execute arbit

    KritikCVSS 9,3Kavram kanıtıEPSS %6

    kde · kmplayer20 Ağu 2009

  • CVE-2012-4512
    38İzleyin

    The CSS parser (khtml/css/cssparser.cpp) in Konqueror in KDE 4.7.3 allows remote attackers to cause a denial of service (crash) and possibly

    YüksekCVSS 8,8Kavram kanıtıEPSS %12

    kde · kde8 Şub 2020

  • CVE-2008-1670
    38İzleyin

    Heap-based buffer overflow in the progressive PNG Image loader (decoders/pngloader.cpp) in KHTML in KDE 4.0.x up to 4.0.3 allows remote atta

    KritikCVSS 9,3İstismar yokEPSS %5

    kde · kde28 Nis 2008

  • CVE-2009-4035
    38İzleyin

    The FoFiType1::parse function in fofi/FoFiType1.cc in Xpdf 3.0.0, gpdf 2.8.2, kpdf in kdegraphics 3.3.1, and possibly other libraries and ve

    KritikCVSS 9,3İstismar yokEPSS %4

    kde · kdegraphics21 Ara 2009

  • CVE-2004-0867
    35İzleyin

    Mozilla Firefox 0.9.2 allows web sites to set cookies for country-specific top-level domains, such as .ltd.uk, .plc.uk, and .sch.uk, which c

    YüksekCVSS 7,5İstismar yokEPSS %17

    mozilla · firefox23 Ara 2004

  • CVE-2004-0866
    33İzleyin

    Internet Explorer 6.0 allows web sites to set cookies for country-specific top-level domains, such as .ltd.uk, .plc.uk, and .sch.uk, which c

    YüksekCVSS 7,5İstismar yokEPSS %10

    kde · konqueror16 Eyl 2004

  • CVE-2019-7443
    33İzleyin

    KDE KAuth before 5.55 allows the passing of parameters with arbitrary types to helpers running as root over DBus via DBusHelperProxy.cpp.

    YüksekCVSS 8,1İstismar yokEPSS %2

    kde · kauth7 May 2019

  • CVE-2016-7967
    33İzleyin

    KMail since version 5.3.0 used a QWebEngine based viewer that had JavaScript enabled.

    YüksekCVSS 8,1İstismar yokEPSS %2

    kde · kmail23 Ara 2016

  • CVE-2013-2120
    33İzleyin

    The %{password(...)} macro in pastemacroexpander.cpp in the KDE Paste Applet before 4.10.5 in kdeplasma-addons does not properly generate pa

    YüksekCVSS 8,4İstismar yokEPSS %1

    kde · paste applet11 Şub 2020

  • CVE-2016-3100
    33İzleyin

    kinit in KDE Frameworks before 5.23.0 uses weak permissions (644) for /tmp/xauth-xxx-_y, which allows local users to obtain X11 cookies of o

    YüksekCVSS 8,4İstismar yokEPSS %0

    kde · kde frameworks13 Tem 2016

  • CVE-2004-0803
    32İzleyin

    Multiple vulnerabilities in the RLE (run length encoding) decoders for libtiff 3.6.1 and earlier, related to buffer overflows and integer ov

    YüksekCVSS 7,5İstismar yokEPSS %8

    libtiff · libtiff23 Ara 2004

  • CVE-2004-0411
    32İzleyin

    The URI handlers in Konqueror for KDE 3.2.2 and earlier do not properly filter "-" characters that begin a hostname in a (1) telnet, (2) rlo

    YüksekCVSS 7,5İstismar yokEPSS %8

    kde · konqueror7 Tem 2004

  • CVE-2005-2971
    32İzleyin

    Heap-based buffer overflow in the KWord RTF importer for KOffice 1.2.0 through 1.4.1 allows remote attackers to execute arbitrary code via a

    YüksekCVSS 7,5İstismar yokEPSS %6

    kde · koffice20 Eki 2005

  • CVE-2003-0988
    32İzleyin

    Buffer overflow in the VCF file information reader for KDE Personal Information Management (kdepim) suite in KDE 3.1.0 through 3.1.4 allows

    YüksekCVSS 7,5İstismar yokEPSS %6

    kde · kde17 Şub 2004

  • CVE-2006-0019
    32İzleyin

    Heap-based buffer overflow in the encodeURI and decodeURI functions in the kjs JavaScript interpreter engine in KDE 3.2.0 through 3.5.0 allo

    YüksekCVSS 7,5İstismar yokEPSS %6

    kde · kde20 Oca 2006