Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!
Bug 274566 - <=kde-base/kdelibs-4.2.4 Remote code execution (CVE-2009-1690)
Summary: <=kde-base/kdelibs-4.2.4 Remote code execution (CVE-2009-1690)
Status: RESOLVED FIXED
Alias: None
Product: Gentoo Security
Classification: Unclassified
Component: Vulnerabilities (show other bugs)
Hardware: All Linux
: High normal (vote)
Assignee: Gentoo Security
URL:
Whiteboard: ?? [noglsa]
Keywords:
Depends on: 292791
Blocks: CVE-2009-1690
  Show dependency tree
 
Reported: 2009-06-17 22:13 UTC by Robert Förster
Modified: 2013-09-12 22:12 UTC (History)
2 users (show)

See Also:
Package list:
Runtime testing required: ---


Attachments
patch from upstream svn (kdelibs-4.2.4-CVE-2009-1690.patch,527 bytes, patch)
2009-06-17 22:15 UTC, Robert Förster
no flags Details | Diff
patch from upstream svn (kdelibs-4.2.4-CVE-2009-1690.patch,2.55 KB, patch)
2009-06-18 00:28 UTC, Robert Förster
no flags Details | Diff

Note You need to log in before you can comment on or make changes to this bug.
Description Robert Förster 2009-06-17 22:13:03 UTC
CVE-2009-1690 (http://nvd.nist.gov/nvd.cfm?cvename=CVE-2009-1690):
  Use after free vulnerability in WebKit, as used in Apple Safari before 4.0, 
  Google Chrome 1.0.154.53, and possibly other products, allows remote attackers 
  to execute arbitrary code or cause a denial of service (memory corruption and 
  application crash) by setting an unspecified property of an HTML tag that 
  causes child elements to be freed and later accessed when an HTML error occurs, 
  related to "recursion in certain DOM event handlers."
Comment 1 Robert Förster 2009-06-17 22:15:26 UTC
Created attachment 195030 [details, diff]
patch from upstream svn
Comment 2 Tomáš Chvátal (RETIRED) gentoo-dev 2009-06-17 22:27:58 UTC
+*kdelibs-4.2.4-r2 (17 Jun 2009)
+
+  17 Jun 2009; Tomáš Chvátal <scarabeus@gentoo.org>
+  -kdelibs-4.2.4-r1.ebuild, +kdelibs-4.2.4-r2.ebuild,
+  +files/4.2.4-CVE-2009-1690.patch:
+  Revision bump. Apply security patch from upstream. Per bug #274566. Remove
+  affected stuff.
+
Applied, it compiles, nobody is hacking mine pc :]
Comment 3 Robert Förster 2009-06-18 00:28:09 UTC
Created attachment 195036 [details, diff]
patch from upstream svn

i was too fast, here is a updated patch
(fix crash on <head> occuring twice (CVE-2009-1690))
i hope that is the last one
Comment 4 Tomas Hoger 2009-06-18 10:24:04 UTC
(In reply to comment #1)
> Created an attachment (id=195030) [edit]
> patch from upstream svn

That one should be a fix for CVE-2009-0945.  Only this one should be for 1690:

http://websvn.kde.org/?view=rev&revision=983316 (in attachment in comment #3)
Comment 5 Arfrever Frehtes Taifersar Arahesis (RETIRED) gentoo-dev 2009-06-20 13:47:00 UTC
(In reply to comment #3)

Committed.
Comment 6 Alex Alexander (RETIRED) gentoo-dev 2009-08-20 22:03:56 UTC
removing block, bug #277868 tracker switched to 4.3.1
Comment 7 Samuli Suominen (RETIRED) gentoo-dev 2010-01-23 15:50:34 UTC
KDE 4.2.4 is out of tree, reuss as back if we need to do something

Current stable is 4.3.3
Comment 8 Stefan Behte (RETIRED) gentoo-dev Security 2011-10-08 22:17:22 UTC
Vote: YES. Added to pending GLSA request.
Comment 9 Chris Reffett (RETIRED) gentoo-dev Security 2013-09-12 22:12:59 UTC
Too old. No GLSA for you.