Multiple buffer overflows in LISa on KDE 2.x for 2.1 and later, and KDE 3.x before 3.0.4, allow (1) local and possibly remote attackers to execute arbitrary code via the "lisa" daemon, and (2) remote attackers to execute arbitrary code via a certain "lan://" URL.
2002-11-29T05:00:00.000
2025-04-03T01:03:51.193
Deferred
CVSSv2: 7.5 (HIGH)
AV:N/AC:L/Au:N/C:P/I:P/A:P
10.0
6.4
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | kde | kde | 2.1 | Yes |
Operating System | kde | kde | 2.1.1 | Yes |
Operating System | kde | kde | 2.1.2 | Yes |
Operating System | kde | kde | 2.2 | Yes |
Operating System | kde | kde | 2.2.1 | Yes |
Operating System | kde | kde | 2.2.2 | Yes |
Operating System | kde | kde | 3.0 | Yes |
Operating System | kde | kde | 3.0.1 | Yes |
Operating System | kde | kde | 3.0.2 | Yes |
Operating System | kde | kde | 3.0.3 | Yes |