<?xml version="1.0" encoding="UTF-8"?>

<rss version="2.0" xmlns:blogChannel="http://backend.userland.com/blogChannelModule">

<channel>
<title>KDE 4.x Multiple Highly Critical Vulnerabilities in Security</title>
<link>http://www.dslreports.com/forum/r22645083</link>
<description></description>
<language>en</language>
<pubDate>Sun, 29 Nov 2009 00:53:23 EDT</pubDate>
<lastBuildDate>Sun, 29 Nov 2009 00:53:23 EDT</lastBuildDate>

<item>
<title>Re: KDE 4.x Multiple Highly Critical Vulnerabilities</title>
<link>http://www.dslreports.com/forum/remark,22652080</link>
<description><![CDATA[<A HREF="/useremail/u/655964"><b>jdong</b></A> : In fact, the proactives stack/heap protection capabilities of most distributions (OpenSUSE, Fedora/RHEL, Ubuntu) will stop this class of vulnerabilities.<br><small>--<br>Ubuntu MOTU Developer and Forums Council</small>]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,22652080</guid>
<pubDate>Fri, 03 Jul 2009 22:28:36 EDT</pubDate>
</item>

<item>
<title>Re: KDE 4.x Multiple Highly Critical Vulnerabilities</title>
<link>http://www.dslreports.com/forum/remark,22646476</link>
<description><![CDATA[<A HREF="/useremail/u/634007"><b>SUMware</b></A> : Agreed. It's pretty much a non-issue.]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,22646476</guid>
<pubDate>Thu, 02 Jul 2009 17:46:51 EDT</pubDate>
</item>

<item>
<title>Re: KDE 4.x Multiple Highly Critical Vulnerabilities</title>
<link>http://www.dslreports.com/forum/remark,22646437</link>
<description><![CDATA[<A HREF="/useremail/u/1578887"><b>KodiacZiller</b></A> : This appears to only be an issue if one is using a KHTML browser (a la Konqueror) which hardly anyone does, almost all Linux users use Firefox.  And, as Sumware said, not running as root would stop this from compromising the entire system (and almost no one runs as root, especially on the *buntu's).  Kubuntu has already pushed the fix for this.  I was prompted to update earlier today.  <br><br>This is one of the reasons I always create MAC profiles for my browser -- it's easy to do and makes bugs like this near impossible to execute.  (Actually AppArmor is easy to do, SELinux not so much) ;)<br><br>And where is Matunga? :)]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,22646437</guid>
<pubDate>Thu, 02 Jul 2009 17:38:53 EDT</pubDate>
</item>

<item>
<title>Re: KDE 4.x Multiple Highly Critical Vulnerabilities</title>
<link>http://www.dslreports.com/forum/remark,22645328</link>
<description><![CDATA[<A HREF="/useremail/u/634007"><b>SUMware</b></A> : OK. Understand. Well, I guess that we've now accomplished that. LOL. :)]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,22645328</guid>
<pubDate>Thu, 02 Jul 2009 13:57:39 EDT</pubDate>
</item>

<item>
<title>Re: KDE 4.x Multiple Highly Critical Vulnerabilities</title>
<link>http://www.dslreports.com/forum/remark,22645301</link>
<description><![CDATA[<A HREF="/useremail/u/1537340"><b>Smokey Bear</b></A> : <div class="bquote"><small>said by  SUMware <A HREF="/useremail/u/634007"><IMG SRC="http://i.dslr.net/bb/profile.gif" ALT="See Profile" BORDER=0 WIDTH=16 HEIGHT=11></A> :</small><br><br>And I posted additional information for members.<br><br>I'd be happy to delete my post if you'd like, and its information, if you think that it will be of benefit to readers to do so.<br> </div>No need, your info regard also KDE vulnerabilities, but there was the need to clarify that your reply affect KDE 3.x users. :)<br><small>--<br>Smokey's Security Forums &raquo;<A HREF="http://www.smokey-services.eu/forums/" >www.smokey-services.eu/forums/</A><br>Smokey's Security Weblog &raquo;<A HREF="http://smokeys.wordpress.com/" >smokeys.wordpress.com/</A><br><i>Site Member ASAP - Alliance of Security Analysis Professionals</i></small>]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,22645301</guid>
<pubDate>Thu, 02 Jul 2009 13:52:36 EDT</pubDate>
</item>

<item>
<title>Re: KDE 4.x Multiple Highly Critical Vulnerabilities</title>
<link>http://www.dslreports.com/forum/remark,22645281</link>
<description><![CDATA[<A HREF="/useremail/u/634007"><b>SUMware</b></A> : And I posted additional information for members.<br><br>I'd be happy to delete my post if you'd like, and its information, if you think that it will be of benefit to readers to do so.]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,22645281</guid>
<pubDate>Thu, 02 Jul 2009 13:49:18 EDT</pubDate>
</item>

<item>
<title>Re: KDE 4.x Multiple Highly Critical Vulnerabilities</title>
<link>http://www.dslreports.com/forum/remark,22645260</link>
<description><![CDATA[<A HREF="/useremail/u/1537340"><b>Smokey Bear</b></A> : I posted about KDE <b><u>4.x</u></b> vulnerabilities...]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,22645260</guid>
<pubDate>Thu, 02 Jul 2009 13:46:23 EDT</pubDate>
</item>

<item>
<title>Re: KDE 4.x Multiple Highly Critical Vulnerabilities</title>
<link>http://www.dslreports.com/forum/remark,22645239</link>
<description><![CDATA[<A HREF="/useremail/u/634007"><b>SUMware</b></A> : <div class="bquote"><small>said by  Smokey Bear <A HREF="/useremail/u/1537340"><IMG SRC="http://i.dslr.net/bb/profile.gif" ALT="See Profile" BORDER=0 WIDTH=16 HEIGHT=11></A> :</small><br><br><div class="bquote"><small>said by  SUMware <A HREF="/useremail/u/634007"><IMG SRC="http://i.dslr.net/bb/profile.gif" ALT="See Profile" BORDER=0 WIDTH=16 HEIGHT=11></A> :</small><br><br>Linux distributions provide repository fixes and security updates for users.<br><br>More information:<br>&raquo;<A HREF="http://www.f-secure.com/vulnerabilities/en/SA200902981" >www.f-secure.com/vulnerabilities&middot;&middot;&middot;00902981</A><br> </div>According to F-Secure, this regard KDE 3.x<br> </div>Yes. That's what they say.]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,22645239</guid>
<pubDate>Thu, 02 Jul 2009 13:42:45 EDT</pubDate>
</item>

<item>
<title>Re: KDE 4.x Multiple Highly Critical Vulnerabilities</title>
<link>http://www.dslreports.com/forum/remark,22645234</link>
<description><![CDATA[<A HREF="/useremail/u/1537340"><b>Smokey Bear</b></A> : <div class="bquote"><small>said by  SUMware <A HREF="/useremail/u/634007"><IMG SRC="http://i.dslr.net/bb/profile.gif" ALT="See Profile" BORDER=0 WIDTH=16 HEIGHT=11></A> :</small><br><br>Linux distributions provide repository fixes and security updates for users.<br><br>More information:<br>&raquo;<A HREF="http://www.f-secure.com/vulnerabilities/en/SA200902981" >www.f-secure.com/vulnerabilities&middot;&middot;&middot;00902981</A><br> </div>According to F-Secure, this regard KDE 3.x<br><small>--<br>Smokey's Security Forums &raquo;<A HREF="http://www.smokey-services.eu/forums/" >www.smokey-services.eu/forums/</A><br>Smokey's Security Weblog &raquo;<A HREF="http://smokeys.wordpress.com/" >smokeys.wordpress.com/</A><br><i>Site Member ASAP - Alliance of Security Analysis Professionals</i></small>]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,22645234</guid>
<pubDate>Thu, 02 Jul 2009 13:41:11 EDT</pubDate>
</item>

<item>
<title>Re: KDE 4.x Multiple Highly Critical Vulnerabilities</title>
<link>http://www.dslreports.com/forum/remark,22645187</link>
<description><![CDATA[<A HREF="/useremail/u/634007"><b>SUMware</b></A> : Linux distributions provide repository fixes and security updates for users.<br><br>More information:<br>&raquo;<A HREF="http://www.f-secure.com/vulnerabilities/en/SA200902981" >www.f-secure.com/vulnerabilities&middot;&middot;&middot;00902981</A><br><br>PS - Don't run as root, then it's not an issue. ;)]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,22645187</guid>
<pubDate>Thu, 02 Jul 2009 13:32:12 EDT</pubDate>
</item>

<item>
<title>KDE 4.x Multiple Highly Critical Vulnerabilities</title>
<link>http://www.dslreports.com/forum/remark,22645083</link>
<description><![CDATA[<A HREF="/useremail/u/1537340"><b>Smokey Bear</b></A> : <div class="bquote">Multiple highly critical vulnerabilities have been reported in KDE 4.x, which can be exploited by malicious people to compromise a user's system.<br><br>Impact:  DoS, System access from remote.<br><br>CVE references: CVE-2009-0945, CVE-2009-1690<br><br>Solution Status:  Vendor Workarounds >><br><br>>> &raquo;<A HREF="http://websvn.kde.org/?view=rev&revision=983302" >websvn.kde.org/?view=rev&revision=983302</A>, &raquo;<A HREF="http://websvn.kde.org/?view=rev&revision=983316" >websvn.kde.org/?view=rev&revision=983316</A></div>&raquo;<A HREF="http://secunia.com/advisories/35627/" >secunia.com/advisories/35627/</A><br><small>--<br>Smokey's Security Forums &raquo;<A HREF="http://www.smokey-services.eu/forums/" >www.smokey-services.eu/forums/</A><br>Smokey's Security Weblog &raquo;<A HREF="http://smokeys.wordpress.com/" >smokeys.wordpress.com/</A><br><i>Site Member ASAP - Alliance of Security Analysis Professionals</i></small>]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,22645083</guid>
<pubDate>Thu, 02 Jul 2009 13:13:27 EDT</pubDate>
</item>

</channel>
</rss>
