First published: Thu Oct 02 2008(Updated: )
Konqueror in KDE 3.5.9 allows remote attackers to cause a denial of service (application crash) via Javascript that calls the alert function with a URL-encoded string of a large number of invalid characters.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Konqueror | =3.5.9 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-4382 is classified as a denial of service vulnerability.
To fix CVE-2008-4382, upgrade Konqueror to version 3.5.10 or later.
CVE-2008-4382 affects Konqueror version 3.5.9.
CVE-2008-4382 can be exploited via malicious Javascript that causes the application to crash.
Yes, CVE-2008-4382 can be exploited by remote attackers to trigger a denial of service.