Vulnerability Assessment & Network Security Forums



If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important.  If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery.


Home >> Browse Vulnerability Assessment Database >> Debian Local Security Checks >> [DSA539] DSA-539-1 kdelibs


Vulnerability Assessment Details

[DSA539] DSA-539-1 kdelibs

Vulnerability Assessment Summary
DSA-539-1 kdelibs

Detailed Explanation for this Vulnerability Assessment

The SUSE security team was alerted that in some cases the integrity of
symlinks used by KDE are not ensured and that these symlinks can be
pointing to stale locations. This can be abused by a local attacker
to create or truncate arbitrary files or to prevent KDE applications
from functioning correctly.
For the stable distribution (woody) this problem has been fixed in
version 2.2.2-13.woody.12.
For the unstable distribution (sid) this problem has been fixed in
version 3.3.0-1.
We recommend that you upgrade your kde packages.


Solution : http://www.debian.org/security/2004/dsa-539
Network Security Threat Level: High

Networks Security ID:

Vulnerability Assessment Copyright: This script is (C) 2005 Michel Arboi

Cables, Connectors

Netgear Prosafe M4100-26-POE FSM7226P L2+ 48-Port PoE Managed Switch Rack Ears
$299.95
Netgear Prosafe M4100-26-POE FSM7226P L2+ 48-Port PoE Managed Switch Rack Ears pictureCisco 5-Port switch SF100D-05
$10.0
Cisco 5-Port switch SF100D-05 pictureNetgear Prosafe GS748T V4 Gigabit Smart 48-Port Switch NO RACK EARS LOT D
$119.95
Netgear Prosafe GS748T V4 Gigabit Smart 48-Port Switch NO RACK EARS LOT D pictureWS-C2960-48PST-L - Cisco Catalyst 2960 48-Port 10/100 PoE Managed Switch w/ Ears
$75.0
WS-C2960-48PST-L - Cisco Catalyst 2960 48-Port 10/100 PoE Managed Switch w/ Ears picture


Discussions

No Discussions have been posted on this vulnerability.