Kde · Konqueror · CVE-2004-1145
Name of the Vulnerable Software and Affected Versions:
KDE versions 3.3.1 and earlier
Description:
The issue allows access to restricted Java classes via JavaScript and does not properly restrict access to certain Java classes from the Java applet. This enables remote attackers to bypass sandbox restrictions and read or write arbitrary files.
Recommendations:
For versions 3.3.1 and earlier, consider disabling JavaScript in Konqueror until a patch is available.
Restrict access to Java applets in Konqueror to minimize the risk of exploitation.