Revision Date: | 2013-04-29 | Version: | 11 |
Title: | Konqueror in KDE 3.2.3 and earlier allows web sites to set cookies for country-specific top-level domains, such as .ltd.uk, .plc.uk and .firm.in, which could allow remote attackers to perform a session fixation attack and hijack a user's HTTP session. |
Description: | Konqueror in KDE 3.2.3 and earlier allows web sites to set cookies for country-specific top-level domains, such as .ltd.uk, .plc.uk and .firm.in, which could allow remote attackers to perform a session fixation attack and hijack a user's HTTP session. |
Family: | unix | Class: | vulnerability |
Status: | ACCEPTED | Reference(s): | CVE-2004-0746
|
Platform(s): | CentOS Linux 3 Red Hat Enterprise Linux 3
| Product(s): | |
Definition Synopsis |
RHEL3 or CentOS3 The operating system installed on the system is Red Hat Enterprise Linux 3
OR CentOS Linux 3.x
AND Configuration section
kdebase is earlier than 6:3.1.3-5.4
OR kdebase-devel is earlier than 6:3.1.3-5.4
OR kdelibs is earlier than 6:3.1.3-6.6
OR kdelibs-devel is earlier than 6:3.1.3-6.6
|