CVE-2010-1000: Path Traversal
Directory traversal vulnerability in KGet in KDE SC 4.0.0 through 4.4.3 allows remote attackers to create arbitrary files via directory traversal sequences in the name attribute of a file element in a metalink file.
Other sources
Secunia Research reported a flaw in KDE KGet that can be used by a malicious attacker to potentially compromise a user's system. The "name" attribute of the "file" element in metalink files is not properly sanitized before being used to download files. If a user were tricked into downloading a specially crafted metalink file, it could be used to download files to directories outside of the intended download directory via directory traversal flaws. KGet will start to download files in the background even before a user confirms whether or not they want the particular file downloaded, which could lead to KGet silently overwriting existing files with the same name.
This flaw has been assigned the name CVE-2010-1000. It also only affects KGet in KDE 4.x and does not affect earlier versions. Only Red Hat Enterprise Linux 6 and Fedora would be affected.
— Red Hat
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2010-1000?
CVE-2010-1000 is classified as a medium severity vulnerability.
How do I fix CVE-2010-1000?
To fix CVE-2010-1000, update to a fixed version of KDE SC that addresses the directory traversal vulnerability.
Which software versions are affected by CVE-2010-1000?
CVS-2010-1000 affects KDE SC versions 4.0.0 through 4.4.3.
What type of vulnerability is CVE-2010-1000?
CVE-2010-1000 is a directory traversal vulnerability.
Can CVE-2010-1000 be exploited remotely?
Yes, CVE-2010-1000 can be exploited by remote attackers to create arbitrary files.