The HTML thumbnailer plugin in KDE Applications before 18.12.0 allows attackers to trigger outbound TCP connections to arbitrary IP addresses, leading to disclosure of the source IP address.
References
Configurations
History
21 Nov 2024, 03:57
Type | Values Removed | Values Added |
---|---|---|
References | () https://bugzilla.redhat.com/show_bug.cgi?id=1649420 - Issue Tracking, Third Party Advisory | |
References | () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/CWRCGXLPJHM4OFD66BINH2FIMYHRCRKF/ - |
07 Nov 2023, 02:55
Type | Values Removed | Values Added |
---|---|---|
References |
|
|
Information
Published : 2018-11-29 21:29
Updated : 2024-11-21 03:57
NVD link : CVE-2018-19120
Mitre link : CVE-2018-19120
CVE.ORG link : CVE-2018-19120
JSON object : View
Products Affected
kde
- kde_applications
CWE
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor