PT-2004-1773 · Kde · Kde

Andrew Tuitt

·

Published

2004-08-19

·

Updated

2024-01-26

·

CVE-2004-0689

CVSS v2.0

4.6

Medium

VectorAV:L/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions KDE versions prior to 3.3.0
Description The issue arises from improper handling of certain symbolic links that point to 'stale' locations. This could allow local users to create or truncate arbitrary files.
Recommendations For versions prior to 3.3.0, update to version 3.3.0 or later to resolve the issue.

Fix

Link Following

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2004-0689
DSA-539
RHSA-2004:412

Affected Products

Kde