Описание
KDE Konqueror 3.5.6 and earlier allows remote attackers to cause a denial of service (crash) via large HTTP cookie parameters.
Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| kdebase | unfixed | package |
Примечания
not reproducible with 4:3.5.8.dfsg.1-1, poked maintainer
it seems konqueror only treats the cookie value until some special length
as cookie, after this length it will open the rest as site content. This eats alot
ram and cpu but depending on how much ram the system has, konqueror will die after
no memory is left, not treated as security problem.
EPSS
Связанные уязвимости
KDE Konqueror 3.5.6 and earlier allows remote attackers to cause a denial of service (crash) via large HTTP cookie parameters.
KDE Konqueror 3.5.6 and earlier allows remote attackers to cause a denial of service (crash) via large HTTP cookie parameters.
KDE Konqueror 3.5.6 and earlier allows remote attackers to cause a denial of service (crash) via large HTTP cookie parameters.
EPSS