CVE-2008-5698
published 2008-12-22CVE-2008-5698: HTMLTokenizer::scriptHandler in Konqueror in KDE 3.5.9 and 3.5.10 allows remote attackers to cause a denial of service (application crash) via an invalid…
PriorityP416medium4.3CVSS 2.0
AVNACMAuNCNINAP
EXPLOIT
EPSS
3.49%
87.7th percentile
HTMLTokenizer::scriptHandler in Konqueror in KDE 3.5.9 and 3.5.10 allows remote attackers to cause a denial of service (application crash) via an invalid document.load call that triggers use of a deleted object. NOTE: some of these details are obtained from third party information.
CVSS provenance
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:N/I:N/A:P
vendor_redhat4.3MEDIUM
CVEs like this are exactly what “Exploited This Week” covers.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-jvw2-792q-jwgr: HTMLTokenizer::scriptHandler in Konqueror in KDE 3
ghsa_unreviewed·2022-05-17
CVE-2008-5698 [MEDIUM] GHSA-jvw2-792q-jwgr: HTMLTokenizer::scriptHandler in Konqueror in KDE 3
HTMLTokenizer::scriptHandler in Konqueror in KDE 3.5.9 and 3.5.10 allows remote attackers to cause a denial of service (application crash) via an invalid document.load call that triggers use of a deleted object. NOTE: some of these details are obtained from third party information.
Red Hat
CVE-2008-5698: HTMLTokenizer::scriptHandler in Konqueror in KDE 3
vendor_redhat·CVSS 4.3
CVE-2008-5698 [MEDIUM] CVE-2008-5698: HTMLTokenizer::scriptHandler in Konqueror in KDE 3
HTMLTokenizer::scriptHandler in Konqueror in KDE 3.5.9 and 3.5.10 allows remote attackers to cause a denial of service (application crash) via an invalid document.load call that triggers use of a deleted object. NOTE: some of these details are obtained from third party information.
Statement: Red Hat does not consider a crash of a client application such as Konqueror to be a security issue.
No detection rules found.
No writeups or analysis indexed.
http://secunia.com/advisories/32208http://securityreason.com/securityalert/4796http://www.securityfocus.com/bid/31696http://www.vupen.com/english/advisories/2008/2915https://exchange.xforce.ibmcloud.com/vulnerabilities/45804https://www.exploit-db.com/exploits/6718http://secunia.com/advisories/32208http://securityreason.com/securityalert/4796http://www.securityfocus.com/bid/31696http://www.vupen.com/english/advisories/2008/2915https://exchange.xforce.ibmcloud.com/vulnerabilities/45804https://www.exploit-db.com/exploits/6718
2008-12-22
Published