CVE-2005-1920: High severity KDE kde vulnerability
The (1) Kate and (2) Kwrite applications in KDE KDE 3.2.x through 3.4.0 do not properly set the same permissions on the backup file as were set on the original file, which could allow local users and possibly remote attackers to obtain sensitive information.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2005-1920?
CVE-2005-1920 is considered a moderate risk vulnerability due to improper permissions on backup files.
How can I fix CVE-2005-1920?
To fix CVE-2005-1920, update your KDE applications to a version later than 3.4.0 that addresses the permission issues.
What applications are affected by CVE-2005-1920?
CVE-2005-1920 affects the Kate and Kwrite applications in KDE versions 3.2.x through 3.4.0.
Can CVE-2005-1920 allow data exposure?
Yes, CVE-2005-1920 could allow local users and possibly remote attackers to obtain sensitive information from backup files.
What distributions are impacted by CVE-2005-1920?
CVE-2005-1920 impacts various distributions including KDE versions found in Debian GNU/Linux 3.1.