CVE-2004-0689: High severity kde kde vulnerability
Published Aug 19, 2004
·Updated
KDE before 3.3.0 does not properly handle when certain symbolic links point to "stale" locations, which could allow local users to create or truncate arbitrary files.
Affected Software
3 affected components
KDE kde<=3.3.0
KDE kde<3.3
Debian Debian Linux=3.0
Remediation
Patch Available
Patch Available
Patch Available
Patch Available
Event History
Aug 19, 2004
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2004-0689?
CVE-2004-0689 is classified as a moderate severity vulnerability.
2
How do I fix CVE-2004-0689?
To fix CVE-2004-0689, upgrade KDE to version 3.3.0 or later.
3
What are the potential consequences of CVE-2004-0689?
The vulnerability may allow local users to create or truncate arbitrary files, potentially leading to data loss or corruption.
4
Which versions of KDE are affected by CVE-2004-0689?
CVE-2004-0689 affects KDE versions prior to 3.3.0.
5
Is CVE-2004-0689 exploitable remotely?
CVE-2004-0689 is not a remote vulnerability and requires local access for exploitation.