CVE-2006-3742: Critical severity KDE Kdebase vulnerability
Published Sep 6, 2006
·Updated
The KDE PAM configuration shipped with Fedora Core 5 causes KDM passwords to be cached, which allows attackers to login without a password by attempting to log in multiple times.
Affected Software
1 affected component
KDE Kdebase=3.5.4_0.4.fc5
Remediation
Patch Available
Event History
Sep 6, 2006
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2006-3742?
CVE-2006-3742 is considered a high severity vulnerability due to its ability to allow unauthorized access to user accounts.
2
How do I fix CVE-2006-3742?
To fix CVE-2006-3742, update the KDE PAM configuration to prevent password caching on KDM logins.
3
What versions of KDE are affected by CVE-2006-3742?
CVE-2006-3742 specifically affects KDE version 3.5.4_0.4.fc5.
4
Can attackers exploit CVE-2006-3742 remotely?
Yes, attackers can exploit CVE-2006-3742 remotely by repeatedly attempting to log in without needing the correct password.
5
Is there a patch available for CVE-2006-3742?
Yes, patches are available that can be applied to mitigate the vulnerability associated with CVE-2006-3742.