CVE-2005-0754: High severity Conectiva Linux vulnerability
Kommander in KDE 3.2 through KDE 3.4.0 executes data files without confirmation from the user, which allows remote attackers to execute arbitrary code.
Affected Software
Remediation
Patch Available
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2005-0754?
CVE-2005-0754 is considered to be a high severity vulnerability due to its potential to allow remote code execution.
How do I fix CVE-2005-0754?
To fix CVE-2005-0754, update your KDE installation to a version that addresses this vulnerability, such as a version released after KDE 3.4.0.
What versions of KDE are affected by CVE-2005-0754?
CVE-2005-0754 affects KDE versions from 3.2 to 3.4.0, including various distributions like Quanta and several Linux distros.
What type of vulnerability is CVE-2005-0754?
CVE-2005-0754 is an execution vulnerability that allows unauthorized execution of arbitrary code from untrusted data files.
Can CVE-2005-0754 be exploited remotely?
Yes, CVE-2005-0754 can be exploited remotely, allowing attackers to execute malicious code without user confirmation.