Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The KDE SSL Wrapper (KSSL) API in KDE SC 4.6.0 through 4.7.1, and possibly earlier versions, does not use a certain font when rendering certificate fields in a security dialog, which allows remote attackers to spoof the common name (CN) of a certificate via rich text.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
KDE SC 输入验证错误漏洞
Vulnerability Description
KDE SC是KDE社区的一个KDE的桌面环境。2010年2月4.4版发布之前的版本,Software Compilation称为K Desktop Environment。 KDE SC存在输入验证错误漏洞,该漏洞源于在安全对话框中渲染证书字段时不使用某一种字体。远程攻击者可借助rach文本骗取证书的常用名(CN)。
CVSS Information
N/A
Vulnerability Type
N/A