CVE-2003-0988: Buffer Overflow
Published Feb 17, 2004
·Updated
Buffer overflow in the VCF file information reader for KDE Personal Information Management (kdepim) suite in KDE 3.1.0 through 3.1.4 allows attackers to execute arbitrary code via a VCF file.
Affected Software
4 affected components
KDE kde=3.1.0
KDE kde=3.1.1
KDE kde=3.1.2
KDE kde=3.1.3
Remediation
Patch Available
Patch Available
Patch Available
Event History
Feb 17, 2004
CVE Published
05:00 AM
Sep 1, 2004
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2003-0988?
CVE-2003-0988 has a high severity rating due to its potential for arbitrary code execution.
2
How do I fix CVE-2003-0988?
To fix CVE-2003-0988, upgrade to a fixed version of KDE that is higher than 3.1.4.
3
What versions of KDE are affected by CVE-2003-0988?
CVE-2003-0988 affects KDE versions 3.1.0 through 3.1.4.
4
What kind of attack does CVE-2003-0988 enable?
CVE-2003-0988 enables attackers to execute arbitrary code by crafting malicious VCF files.
5
Is CVE-2003-0988 still a risk in modern systems?
CVE-2003-0988 is not a risk for modern systems running versions of KDE beyond 3.1.4.