Lucene search

K
cveRedhatCVE-2006-4811
HistoryOct 18, 2006 - 5:07 p.m.

CVE-2006-4811

2006-10-1817:07:00
CWE-189
redhat
web.nvd.nist.gov
39
cve-2006-4811
integer overflow
qt
kde
khtml
kdelibs
denial of service
remote code execution
nvd

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

AI Score

7.4

Confidence

Low

EPSS

0.115

Percentile

95.3%

Integer overflow in Qt 3.3 before 3.3.7, 4.1 before 4.1.5, and 4.2 before 4.2.1, as used in the KDE khtml library, kdelibs 3.1.3, and possibly other packages, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted pixmap image.

Affected configurations

Nvd
Node
qtqtMatch3.3.0
OR
qtqtMatch3.3.1
OR
qtqtMatch3.3.2
OR
qtqtMatch3.3.3
OR
qtqtMatch3.3.4
OR
qtqtMatch3.3.5
OR
qtqtMatch3.3.6
OR
qtqtMatch4.1.0
OR
qtqtMatch4.1.1
OR
qtqtMatch4.1.2
OR
qtqtMatch4.1.3
OR
qtqtMatch4.1.4
OR
qtqtMatch4.2.0
OR
redhatkdelibsMatch3.1.3
VendorProductVersionCPE
qtqt3.3.0cpe:2.3:a:qt:qt:3.3.0:*:*:*:*:*:*:*
qtqt3.3.1cpe:2.3:a:qt:qt:3.3.1:*:*:*:*:*:*:*
qtqt3.3.2cpe:2.3:a:qt:qt:3.3.2:*:*:*:*:*:*:*
qtqt3.3.3cpe:2.3:a:qt:qt:3.3.3:*:*:*:*:*:*:*
qtqt3.3.4cpe:2.3:a:qt:qt:3.3.4:*:*:*:*:*:*:*
qtqt3.3.5cpe:2.3:a:qt:qt:3.3.5:*:*:*:*:*:*:*
qtqt3.3.6cpe:2.3:a:qt:qt:3.3.6:*:*:*:*:*:*:*
qtqt4.1.0cpe:2.3:a:qt:qt:4.1.0:*:*:*:*:*:*:*
qtqt4.1.1cpe:2.3:a:qt:qt:4.1.1:*:*:*:*:*:*:*
qtqt4.1.2cpe:2.3:a:qt:qt:4.1.2:*:*:*:*:*:*:*
Rows per page:
1-10 of 141

References

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

AI Score

7.4

Confidence

Low

EPSS

0.115

Percentile

95.3%