Back

LOW

Spoofing of URI possible in Konqueror's address bar

Published Jul 17, 2007

Description

konqueror/konq_combo.cc in Konqueror 3.5.7 allows remote attackers to spoof the data: URI scheme in the address bar via a long URI with trailing whitespace, which prevents the beginning of the URI from being displayed.

Affected products

Remediation

Red Hat statement

This issue did not affect Red Hat Enterprise Linux 2.1 or 3. For Red Hat Enterprise Linux 4 and 5, Red Hat is aware of this issue and is tracking it via the following bug: https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=248537 The Red Hat Product Security has rated this issue as having low security impact, a future update may address this flaw.

Metrics

Weaknesses (0)

No CWE recorded.

References (30)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Jul 17, 2007
Updated Aug 7, 2024
Reserved Jul 16, 2007
NVD
Status Modified
Modified Jun 16, 2026
Red Hat
Severity Low
Public date Jul 14, 2007