|Bugzilla:||233592: CVE-2007-1564 FTP protocol PASV design flaw affects konqueror|
The MITRE CVE dictionary describes this issue as:
The FTP protocol implementation in Konqueror 3.5.5 allows remote servers to force the client to connect to other servers, perform a proxied port scan, or obtain sensitive information by specifying an alternate server address in an FTP PASV response.
Red Hat is aware of this issue and is tracking it via the following bug:
The Red Hat Security Response Team has rated this issue as having low security impact, a future update may address this flaw.
More information regarding issue severity can be found here:
Red Hat security errata
|Red Hat Enterprise Linux version 4 (kdelibs)||RHSA-2007:0909||October 08, 2007|
|Red Hat Enterprise Linux version 5 (kdelibs)||RHSA-2007:0909||October 08, 2007|
This page is generated automatically and has not been checked for errors or omissions.
For clarification or corrections please contact the Red Hat Security Response Team.