Use-after-free vulnerability in khtml/rendering/render_replaced.cpp in Konqueror in KDE 4.7.3, when the context menu is shown, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code by accessing an iframe when it is being updated.
References
Configurations
History
21 Nov 2024, 01:43
Type | Values Removed | Values Added |
---|---|---|
References | () http://archives.neohapsis.com/archives/bugtraq/2012-11/0005.html - | |
References | () http://quickgit.kde.org/index.php?p=kdelibs.git&a=commitdiff&h=4f2eb356f1c23444fff2cfe0a7ae10efe303d6d8 - Exploit | |
References | () http://secunia.com/advisories/51097 - Vendor Advisory | |
References | () http://secunia.com/advisories/51145 - Vendor Advisory | |
References | () http://www.nth-dimension.org.uk/pub/NDSA20121010.txt.asc - Exploit | |
References | () http://www.openwall.com/lists/oss-security/2012/10/11/11 - | |
References | () http://www.openwall.com/lists/oss-security/2012/10/30/6 - |
Information
Published : 2012-11-11 13:00
Updated : 2024-11-21 01:43
NVD link : CVE-2012-4515
Mitre link : CVE-2012-4515
CVE.ORG link : CVE-2012-4515
JSON object : View
Products Affected
kde
- kde
CWE
CWE-399
Resource Management Errors