[dot] Security: Three KDE Security Advisories

Dot Stories stories at kdenews.org
Wed Jan 5 18:36:31 CET 2005


URL: http://dot.kde.org/1104944928/

From: binner <>
Dept: xpdf-is-the-culprit-again
Date: Wednesday 05/Jan/2005, @18:08

Security: Three KDE Security Advisories
=======================================

   Three security advisories [http://www.kde.org/info/security/] have
been issued by the KDE Security Team [security at kde.org] over the last
days for two distinct vulnerabilities that have been found: All KDE
releases up to including KDE 3.3.2 are vunerable to a FTP KIO Slave
Command Injection
[http://www.kde.org/info/security/advisory-20050101-1.txt]. And another
xpdf Buffer Overflow
[http://www.idefense.com/application/poi/display?id=172&type=vulnerabilities&flashstatus=true]
has been found affecting kpdf in all KDE versions
[http://www.kde.org/info/security/advisory-20041223-1.txt] and also all
KOffice 1.3 versions.
 [http://www.koffice.org/security/2004_xpdf_integer_overflow_2.php]



More information about the dot-stories mailing list