6.4
CVSSv2

CVE-2012-4513

Published: 11/11/2012 Updated: 12/11/2012
CVSS v2 Base Score: 6.4 | Impact Score: 4.9 | Exploitability Score: 10
VMScore: 645
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:P

Vulnerability Summary

khtml/imload/scaledimageplane.h in Konqueror in KDE 4.7.3 allows remote malicious users to cause a denial of service (crash) and possibly read memory via large canvas dimensions, which leads to an unexpected sign extension and a heap-based buffer over-read.

Vulnerable Product Search on Vulmon Subscribe to Product

kde kde 4.7.3

Vendor Advisories

Synopsis Critical: kdelibs security update Type/Severity Security Advisory: Critical Topic Updated kdelibs packages that fix two security issues are now available forRed Hat Enterprise Linux 6 FasTrackThe Red Hat Security Response Team has rated this update as having criticalsecurity impact Common Vulnera ...
Synopsis Critical: kdelibs security update Type/Severity Security Advisory: Critical Topic Updated kdelibs packages that fix two security issues are now available forRed Hat Enterprise Linux 6The Red Hat Security Response Team has rated this update as having criticalsecurity impact Common Vulnerability Sc ...

Exploits

-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Nth Dimension Security Advisory (NDSA20121010) Date: 10th October 2012 Author: Tim Brown <mailto:timb@nth-dimensionorguk> URL: <wwwnth-dimensionorguk/> / <wwwmachineorguk/> Product: Konqueror 473 <konquerorkdeorg/> Vendor: KDE <wwwkd ...