CVE-2006-3672

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
18/07/2006
Last modified:
03/04/2025

Description

KDE Konqueror 3.5.1 and earlier allows remote attackers to cause a denial of service (application crash) by calling the replaceChild method on a DOM object, which triggers a null dereference, as demonstrated by calling document.replaceChild with a 0 (zero) argument.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:kde:konqueror:*:*:*:*:*:*:*:* 3.5.1 (including)
cpe:2.3:a:kde:konqueror:2.1.1:*:*:*:*:*:*:*
cpe:2.3:a:kde:konqueror:2.1.2:*:*:*:*:*:*:*
cpe:2.3:a:kde:konqueror:2.2.1:*:*:*:*:*:*:*
cpe:2.3:a:kde:konqueror:2.2.2:*:*:*:*:*:*:*
cpe:2.3:a:kde:konqueror:3.0:*:*:*:*:*:*:*
cpe:2.3:a:kde:konqueror:3.0.1:*:*:*:*:*:*:*
cpe:2.3:a:kde:konqueror:3.0.2:*:*:*:*:*:*:*
cpe:2.3:a:kde:konqueror:3.0.3:*:*:*:*:*:*:*
cpe:2.3:a:kde:konqueror:3.0.5:*:*:*:*:*:*:*
cpe:2.3:a:kde:konqueror:3.0.5b:*:*:*:*:*:*:*
cpe:2.3:a:kde:konqueror:3.1:*:*:*:*:*:*:*
cpe:2.3:a:kde:konqueror:3.1.1:*:*:*:*:*:*:*
cpe:2.3:a:kde:konqueror:3.1.2:*:*:*:*:*:*:*
cpe:2.3:a:kde:konqueror:3.1.3:*:*:*:*:*:*:*