CVE-2007-3820

konqueror/konq_combo.cc in Konqueror 3.5.7 allows remote attackers to spoof the data: URI scheme in the address bar via a long URI with trailing whitespace, which prevents the beginning of the URI from being displayed.
References
Link Resource
http://alt.swiecki.net/oper1.html
http://osvdb.org/37242
http://secunia.com/advisories/26091 Vendor Advisory
http://secunia.com/advisories/26612
http://secunia.com/advisories/26720
http://secunia.com/advisories/27089
http://secunia.com/advisories/27090
http://secunia.com/advisories/27096
http://secunia.com/advisories/27106
http://secunia.com/advisories/27108
http://securityreason.com/securityalert/2905
http://www.kde.org/info/security/advisory-20070816-1.txt
http://www.mandriva.com/security/advisories?name=MDKSA-2007:176
http://www.redhat.com/support/errata/RHSA-2007-0905.html
http://www.redhat.com/support/errata/RHSA-2007-0909.html
http://www.securityfocus.com/archive/1/473703/100/0/threaded
http://www.securityfocus.com/archive/1/473712/100/0/threaded
http://www.securityfocus.com/bid/24912
http://www.securityfocus.com/bid/24918
http://www.securitytracker.com/id?1018396
http://www.ubuntu.com/usn/usn-502-1
http://www.vupen.com/english/advisories/2007/2538
https://exchange.xforce.ibmcloud.com/vulnerabilities/35430
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10345
https://www.redhat.com/archives/fedora-package-announce/2007-October/msg00022.html
https://www.redhat.com/archives/fedora-package-announce/2007-October/msg00085.html
http://alt.swiecki.net/oper1.html
http://osvdb.org/37242
http://secunia.com/advisories/26091 Vendor Advisory
http://secunia.com/advisories/26612
http://secunia.com/advisories/26720
http://secunia.com/advisories/27089
http://secunia.com/advisories/27090
http://secunia.com/advisories/27096
http://secunia.com/advisories/27106
http://secunia.com/advisories/27108
http://securityreason.com/securityalert/2905
http://www.kde.org/info/security/advisory-20070816-1.txt
http://www.mandriva.com/security/advisories?name=MDKSA-2007:176
http://www.redhat.com/support/errata/RHSA-2007-0905.html
http://www.redhat.com/support/errata/RHSA-2007-0909.html
http://www.securityfocus.com/archive/1/473703/100/0/threaded
http://www.securityfocus.com/archive/1/473712/100/0/threaded
http://www.securityfocus.com/bid/24912
http://www.securityfocus.com/bid/24918
http://www.securitytracker.com/id?1018396
http://www.ubuntu.com/usn/usn-502-1
http://www.vupen.com/english/advisories/2007/2538
https://exchange.xforce.ibmcloud.com/vulnerabilities/35430
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10345
https://www.redhat.com/archives/fedora-package-announce/2007-October/msg00022.html
https://www.redhat.com/archives/fedora-package-announce/2007-October/msg00085.html
Configurations

Configuration 1 (hide)

cpe:2.3:a:kde:konqueror:3.5.7:*:*:*:*:*:*:*

History

21 Nov 2024, 00:34

Type Values Removed Values Added
References () http://alt.swiecki.net/oper1.html - () http://alt.swiecki.net/oper1.html -
References () http://osvdb.org/37242 - () http://osvdb.org/37242 -
References () http://secunia.com/advisories/26091 - Vendor Advisory () http://secunia.com/advisories/26091 - Vendor Advisory
References () http://secunia.com/advisories/26612 - () http://secunia.com/advisories/26612 -
References () http://secunia.com/advisories/26720 - () http://secunia.com/advisories/26720 -
References () http://secunia.com/advisories/27089 - () http://secunia.com/advisories/27089 -
References () http://secunia.com/advisories/27090 - () http://secunia.com/advisories/27090 -
References () http://secunia.com/advisories/27096 - () http://secunia.com/advisories/27096 -
References () http://secunia.com/advisories/27106 - () http://secunia.com/advisories/27106 -
References () http://secunia.com/advisories/27108 - () http://secunia.com/advisories/27108 -
References () http://securityreason.com/securityalert/2905 - () http://securityreason.com/securityalert/2905 -
References () http://www.kde.org/info/security/advisory-20070816-1.txt - () http://www.kde.org/info/security/advisory-20070816-1.txt -
References () http://www.mandriva.com/security/advisories?name=MDKSA-2007:176 - () http://www.mandriva.com/security/advisories?name=MDKSA-2007:176 -
References () http://www.redhat.com/support/errata/RHSA-2007-0905.html - () http://www.redhat.com/support/errata/RHSA-2007-0905.html -
References () http://www.redhat.com/support/errata/RHSA-2007-0909.html - () http://www.redhat.com/support/errata/RHSA-2007-0909.html -
References () http://www.securityfocus.com/archive/1/473703/100/0/threaded - () http://www.securityfocus.com/archive/1/473703/100/0/threaded -
References () http://www.securityfocus.com/archive/1/473712/100/0/threaded - () http://www.securityfocus.com/archive/1/473712/100/0/threaded -
References () http://www.securityfocus.com/bid/24912 - () http://www.securityfocus.com/bid/24912 -
References () http://www.securityfocus.com/bid/24918 - () http://www.securityfocus.com/bid/24918 -
References () http://www.securitytracker.com/id?1018396 - () http://www.securitytracker.com/id?1018396 -
References () http://www.ubuntu.com/usn/usn-502-1 - () http://www.ubuntu.com/usn/usn-502-1 -
References () http://www.vupen.com/english/advisories/2007/2538 - () http://www.vupen.com/english/advisories/2007/2538 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/35430 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/35430 -
References () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10345 - () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10345 -
References () https://www.redhat.com/archives/fedora-package-announce/2007-October/msg00022.html - () https://www.redhat.com/archives/fedora-package-announce/2007-October/msg00022.html -
References () https://www.redhat.com/archives/fedora-package-announce/2007-October/msg00085.html - () https://www.redhat.com/archives/fedora-package-announce/2007-October/msg00085.html -

Information

Published : 2007-07-17 01:30

Updated : 2025-04-09 00:30


NVD link : CVE-2007-3820

Mitre link : CVE-2007-3820

CVE.ORG link : CVE-2007-3820


JSON object : View

Products Affected

kde

  • konqueror