CVE-2006-6660

KDE libkhtml <4.2.0 - DoS

Title source: llm

Description

The nodeType function in KDE libkhtml 4.2.0 and earlier, as used by Konquerer, KMail, and other programs, allows remote attackers to cause a denial of service (crash) via malformed HTML tags, possibly involving a COL SPAN tag embedded in a RANGE tag.

Exploits (2)

exploitdb WORKING POC VERIFIED
by Federico L. Bossi Bonin · textdoslinux
https://www.exploit-db.com/exploits/29296
exploitdb WORKING POC VERIFIED
by Federico L. Bossi Bonin · htmldoslinux
https://www.exploit-db.com/exploits/2954

Scores

EPSS 0.0428
EPSS Percentile 88.9%

Details

Status published
Products (1)
kde/libkhtml < 4.2.0
Published Dec 20, 2006
Tracked Since Feb 18, 2026