[Secure-testing-team] Bug#537931: CVE-2009-2537: denial of service via a large integer value for the length property of a Select object

Giuseppe Iuculano giuseppe at iuculano.it
Tue Jul 21 19:48:08 UTC 2009


Package: konqueror
Severity: important
Tags: security

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Hi,
the following CVE (Common Vulnerabilities & Exposures) id was
published for konqueror.

CVE-2009-2537[0]:
| KDE Konqueror allows remote attackers to cause a denial of service
| (memory consumption) via a large integer value for the length property
| of a Select object, a related issue to CVE-2009-1692.

If you fix the vulnerability please also make sure to include the
CVE id in your changelog entry.

For further information see:

[0] http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-2537
    http://security-tracker.debian.net/tracker/CVE-2009-2537

Cheers,
Giuseppe.

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.9 (GNU/Linux)

iEYEARECAAYFAkpmG3MACgkQNxpp46476apN+gCfSDDd00cfU7f5GuH+HyJ2sids
FHYAoIsZZ/m4764cygq/tR57x1cLkTb3
=TyGl
-----END PGP SIGNATURE-----





More information about the Secure-testing-team mailing list