VendorsRed Hatkdebaseall versions
Vulnerabilities

Red Hat kdebase

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

4CVEs
CVE-2003-0459
KDE Konqueror for KDE 3.1.2 and earlier does not remove authentication credentials from URLs of the "user:password@host" form in the HTTP-Referer header, which could allow remote web sites to steal the credentials for pages that link to the sites.
Published 2003-08-01 · Modified
5.0EPSS 0.029
CVE-2003-0548
The X Display Manager Control Protocol (XDMCP) support for GDM before 2.4.1.6 allows attackers to cause a denial of service (daemon crash) when a chosen host expires, a different issue than CVE-2003-0549.
Published 2003-08-22 · Modified
5.0EPSS 0.015
CVE-2003-0549
The X Display Manager Control Protocol (XDMCP) support for GDM before 2.4.1.6 allows attackers to cause a denial of service (daemon crash) via a short authorization key name.
Published 2003-08-22 · Modified
5.0EPSS 0.015
CVE-2003-0547
GDM before 2.4.1.6, when using the "examine session errors" feature, allows local users to read arbitrary files via a symlink attack on the ~/.xsession-errors file.
Published 2003-08-22 · Modified
2.1EPSS 0.004