Lucene search

K
redhatRedHatRHSA-2006:0184
HistoryJan 19, 2006 - 12:00 a.m.

(RHSA-2006:0184) kdelibs security update

2006-01-1900:00:00
access.redhat.com
8

0.173 Low

EPSS

Percentile

96.1%

kdelibs contains libraries for the K Desktop Environment (KDE).

A heap overflow flaw was discovered affecting kjs, the JavaScript
interpreter engine used by Konqueror and other parts of KDE. An attacker
could create a malicious web site containing carefully crafted JavaScript
code that would trigger this flaw and possibly lead to arbitrary code
execution. The Common Vulnerabilities and Exposures project assigned the
name CVE-2006-0019 to this issue.

NOTE: this issue does not affect KDE in Red Hat Enterprise Linux 3 or 2.1.

Users of KDE should upgrade to these updated packages, which contain a
backported patch from the KDE security team correcting this issue as well
as two bug fixes.