Family: Debian Local Security Checks --> Category: infos
[DSA518] DSA-518-1 kdelibs Vulnerability Scan
Vulnerability Scan Summary
Detailed Explanation for this Vulnerability Test
iDEFENSE identified a vulnerability in the Opera web browser that
could be used by remote attackers to create or truncate arbitrary
files on the victims machine. The KDE team discovered that a similar
vulnerability exists in KDE.
A remote attacker could entice a user to open a carefully crafted
telnet URI which may either create or truncate a file in the victims
home directory. In KDE 3.2 and later versions the user is first
explicitly asked to confirm the opening of the telnet URI.
For the stable distribution (woody) this problem has been fixed in
We recommend that you upgrade your KDE libraries.
Solution : http://www.debian.org/security/2004/dsa-518
Threat Level: High
Click HERE for more information and discussions on this network vulnerability scan.