[dot] Security: Konqueror Cross-Domain Cookie Injection

Dot Stories stories at kdenews.org
Mon Aug 23 13:11:24 CEST 2004


URL: http://dot.kde.org/1093258584/

From: Waldo Bastian <bastian at kde.org>
Dept: whose-cookie-is-this
Date: Monday 23/Aug/2004, @12:56

Security: Konqueror Cross-Domain Cookie Injection
=================================================

   A  security advisory
[http://www.kde.org/info/security/advisory-20040823-1.txt] has been
issued for a cross-domain cookie injection vulnerability. The
vulnerability is limited to hosts under certain country specific domains
such as the English .ltd.uk domain and the Indian .firm.in domain. KDE
3.3 already contains a fix for this issue.



More information about the dot-stories mailing list