vendor:
Konqueror
by:
Tim Brown
8,8
CVSS
HIGH
Memory Corruption Vulnerabilities
119, 125, 476, 416
CWE
Product Name: Konqueror
Affected Version From: Konqueror 4.7.3
Affected Version To: Konqueror 4.7.3
Patch Exists: YES
Related CWE: CVE-2012-4512, CVE-2012-4513, CVE-2012-4514, CVE-2012-4515
CPE: a:kde:konqueror:4.7.3
Metasploit:
https://www.rapid7.com/db/vulnerabilities/gentoo-linux-cve-2012-4512/, https://www.rapid7.com/db/vulnerabilities/suse-cve-2012-4512/, https://www.rapid7.com/db/vulnerabilities/centos_linux-cve-2012-4512/, https://www.rapid7.com/db/vulnerabilities/suse-cve-2012-4513/, https://www.rapid7.com/db/vulnerabilities/gentoo-linux-cve-2012-4513/, https://www.rapid7.com/db/vulnerabilities/centos_linux-cve-2012-4513/, https://www.rapid7.com/db/vulnerabilities/suse-cve-2012-4514/, https://www.rapid7.com/db/vulnerabilities/gentoo-linux-cve-2012-4514/, https://www.rapid7.com/db/vulnerabilities/suse-cve-2012-4515/, https://www.rapid7.com/db/vulnerabilities/gentoo-linux-cve-2012-4515/
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: None
2012
Nth Dimension Security Advisory (NDSA20121010)
The Konqueror web browser is vulnerable to a number of memory corruption vulnerabilities. This advisory comes in 4 related parts: 1) The Konqueror web browser is vulnerable to type confusion leading to memory disclosure. 2) The Konqueror web browser is vulnerable to an out of bounds memory access when accessing the canvas. 3) The Konqueror web browser is vulnerable to a NULL pointer dereference leading to a crash. 4) The Konqueror web browser is vulnerable to a "use-after-free" class flaw when the context menu is used whilst the document DOM is being changed from within Javascript.
Mitigation:
Nth Dimension recommends that the vendor supplied patches should be applied: a872c8a969a8bd3706253d6ba24088e4f07f3352, 1f8b1b034ccf1713a5d123a4c327290f86d17d53, 65464349951e0df9b5d80c2eb3cc7458d54923ae, 4f2eb356f1c23444fff2cfe0a7ae10efe303d6d8