Vulnerability Description
The nodeType function in KDE libkhtml 4.2.0 and earlier, as used by Konquerer, KMail, and other programs, allows remote attackers to cause a denial of service (crash) via malformed HTML tags, possibly involving a COL SPAN tag embedded in a RANGE tag.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Kde | Libkhtml | <= 4.2.0 |
References
- http://downloads.securityfocus.com/vulnerabilities/exploits/21662.htmlExploit
- http://www.securityfocus.com/bid/21662Exploit
- http://www.vupen.com/english/advisories/2006/5071
- http://downloads.securityfocus.com/vulnerabilities/exploits/21662.htmlExploit
- http://www.securityfocus.com/bid/21662Exploit
- http://www.vupen.com/english/advisories/2006/5071
FAQ
What is CVE-2006-6660?
CVE-2006-6660 is a vulnerability with a CVSS score of 4.3 (MEDIUM). The nodeType function in KDE libkhtml 4.2.0 and earlier, as used by Konquerer, KMail, and other programs, allows remote attackers to cause a denial of service (crash) via malformed HTML tags, possibly...
How severe is CVE-2006-6660?
CVE-2006-6660 has been rated MEDIUM with a CVSS base score of 4.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2006-6660?
Check the references section above for vendor advisories and patch information. Affected products include: Kde Libkhtml.