First published: Tue Feb 17 2004(Updated: )
Buffer overflow in the VCF file information reader for KDE Personal Information Management (kdepim) suite in KDE 3.1.0 through 3.1.4 allows attackers to execute arbitrary code via a VCF file.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
KDE KDE | =3.1.0 | |
KDE KDE | =3.1.2 | |
KDE KDE | =3.1.3 | |
KDE KDE | =3.1.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2003-0988 has a high severity rating due to its potential for arbitrary code execution.
To fix CVE-2003-0988, upgrade to a fixed version of KDE that is higher than 3.1.4.
CVE-2003-0988 affects KDE versions 3.1.0 through 3.1.4.
CVE-2003-0988 enables attackers to execute arbitrary code by crafting malicious VCF files.
CVE-2003-0988 is not a risk for modern systems running versions of KDE beyond 3.1.4.