CVE-2003-0988

KDE Personal Information Management Suite 3.1.0-3.1.4 - Buffer Overflow via VCF File Processing

Title source: llm
STIX 2.1

Description

Buffer overflow in the VCF file information reader for KDE Personal Information Management (kdepim) suite in KDE 3.1.0 through 3.1.4 allows attackers to execute arbitrary code via a VCF file.

References (12)

Core 12
Core References
Third Party Advisory, VDB Entry vdb-entry signature x_refsource_oval
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A865
Mailing List mailing-list x_refsource_bugtraq
http://marc.info/?l=bugtraq&m=107412130407906&w=2
Third Party Advisory vendor-advisory x_refsource_gentoo
http://security.gentoo.org/glsa/glsa-200404-02.xml
Third Party Advisory, VDB Entry vdb-entry signature x_refsource_oval
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A858
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/14833
Patch, Vendor Advisory vendor-advisory x_refsource_redhat
http://www.redhat.com/support/errata/RHSA-2004-005.html
Vendor Advisory vendor-advisory x_refsource_conectiva
http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000810
Various Sources vendor-advisory x_refsource_mandrake
http://www.mandrakesoft.com/security/advisories?name=MDKSA-2004:003
US Government Resource third-party-advisory x_refsource_cert-vn
http://www.kb.cert.org/vuls/id/820798
Patch, Vendor Advisory x_refsource_confirm
http://www.kde.org/info/security/advisory-20040114-1.txt
Vendor Advisory vendor-advisory x_refsource_redhat
http://www.redhat.com/support/errata/RHSA-2004-006.html
Patch, Vendor Advisory vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/9419

Scores

EPSS 0.0769
EPSS Percentile 92.0%

Details

Status published
Products (4)
kde/kde 3.1.0
kde/kde 3.1.1
kde/kde 3.1.2
kde/kde 3.1.3
Published Feb 17, 2004
Tracked Since Feb 18, 2026