Show filters
5 Total Results
Displaying 1-5 of 5
Sort by:
Attacker Value
Unknown

CVE-2012-4512

Disclosure Date: February 08, 2020 (last updated February 21, 2025)
The CSS parser (khtml/css/cssparser.cpp) in Konqueror in KDE 4.7.3 allows remote attackers to cause a denial of service (crash) and possibly read memory via a crafted font face source, related to "type confusion."
Attacker Value
Unknown

CVE-2011-2725

Disclosure Date: February 04, 2014 (last updated October 05, 2023)
Directory traversal vulnerability in Ark 4.7.x and earlier allows remote attackers to delete and force the display of arbitrary files via .. (dot dot) sequences in a zip file.
0
Attacker Value
Unknown

CVE-2012-4513

Disclosure Date: November 11, 2012 (last updated October 05, 2023)
khtml/imload/scaledimageplane.h in Konqueror in KDE 4.7.3 allows remote attackers to cause a denial of service (crash) and possibly read memory via large canvas dimensions, which leads to an unexpected sign extension and a heap-based buffer over-read.
0
Attacker Value
Unknown

CVE-2012-4515

Disclosure Date: November 11, 2012 (last updated October 05, 2023)
Use-after-free vulnerability in khtml/rendering/render_replaced.cpp in Konqueror in KDE 4.7.3, when the context menu is shown, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code by accessing an iframe when it is being updated.
0
Attacker Value
Unknown

CVE-2012-4514

Disclosure Date: November 11, 2012 (last updated October 05, 2023)
rendering/render_replaced.cpp in Konqueror in KDE before 4.9.3 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted web page, related to "trying to reuse a frame with a null part."
0