|Category:||Red Hat Local Security Checks|
|Title:||RedHat Security Advisory RHSA-2003:193|
|Summary:||Redhat Security Advisory RHSA-2003:193|
The remote host is missing updates announced in
KDE is a graphical desktop environment for the X Window System.
KDE versions 2.2.2 and earlier have a vulnerability in their SSL
implementation that makes it possible for users of Konqueror and other SSL
enabled KDE software to fall victim to a man-in-the-middle attack.
Users of KDE should upgrade to these erratum packages, which contain KDE
2.2.2 with a backported patch to correct this vulnerability.
Please note that this update is available via
Red Hat Network. To use Red Hat Network, launch the Red
Hat Update Agent with the following command: up2date
Risk factor : High
BugTraq ID: 7520|
Common Vulnerability Exposure (CVE) ID: CVE-2003-0370
Bugtraq: 20030507 Problem: Multiple Web Browsers do not do not validate CN on certificates. (Google Search)
TurboLinux Advisory: TLSA-2003-36
Debian Security Information: DSA-361 (Google Search)
|Copyright||Copyright (c) 2005 E-Soft Inc. http://www.securityspace.com|
|This is only one of 40037 vulnerability tests in our test suite. Find out more about running a complete security audit.|
To run a free test of this vulnerability against your system, register below.