FreeBSD : kdelibs -- local DCOP denial of service vulnerability (972697a7-9a42-11d9-a256-0001020eed82)

low Nessus Plugin ID 19040

Synopsis

The remote FreeBSD host is missing one or more security-related updates.

Description

A KDE Security Advisory reports :

Sebastian Krahmer of the SUSE LINUX Security Team reported a local denial of service vulnerability in KDE's Desktop Communication Protocol (DCOP) daemon better known as dcopserver.

A local user can lock up the dcopserver of arbitrary other users on the same machine. This can cause a significant reduction in desktop functionality for the affected users including, but not limited to, the inability to browse the internet and the inability to start new applications.

Solution

Update the affected packages.

See Also

https://www.kde.org/info/security/advisory-20050316-1.txt

http://www.nessus.org/u?54566828

Plugin Details

Severity: Low

ID: 19040

File Name: freebsd_pkg_972697a79a4211d9a2560001020eed82.nasl

Version: 1.15

Type: local

Published: 7/13/2005

Updated: 1/6/2021

Supported Sensors: Nessus

Risk Information

VPR

Risk Factor: Low

Score: 3.6

CVSS v2

Risk Factor: Low

Base Score: 2.1

Vector: CVSS2#AV:L/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Information

CPE: p-cpe:/a:freebsd:freebsd:ja-kdelibs, p-cpe:/a:freebsd:freebsd:kdelibs, p-cpe:/a:freebsd:freebsd:kdelibs-nocups, cpe:/o:freebsd:freebsd

Required KB Items: Host/local_checks_enabled, Host/FreeBSD/release, Host/FreeBSD/pkg_info

Patch Publication Date: 3/21/2005

Vulnerability Publication Date: 3/16/2005

Reference Information

CVE: CVE-2005-0396