PT-2020-16321 · Kde+2 · Kdeconnect-Kde+2

Published

2020-10-05

·

Updated

2023-10-12

·

CVE-2020-26164

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions kdeconnect-kde versions prior to 20.08.2
Description The issue allows an attacker on the local network to send crafted packets, triggering the use of large amounts of CPU, memory, or network connection slots, resulting in a Denial of Service attack.
Recommendations For versions prior to 20.08.2, update to version 20.08.2 or later to resolve the issue.

Fix

DoS

Resource Exhaustion

Weakness Enumeration

Related Identifiers

ALT-PU-2020-2939
CVE-2020-26164
MGASA-2020-0416
OPENSUSE-SU-2020:1631-1
OPENSUSE-SU-2020:1647-1
OPENSUSE-SU-2020:1650-1
OPENSUSE-SU-2020_1631-1
OPENSUSE-SU-2024:10890-1

Affected Products

Alt Linux
Suse
Kdeconnect-Kde