KDE 1538 Published by Philipp Esselbach 0

A kdelibs update for Gentoo Linux is available

- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
Gentoo Linux Security Advisory GLSA 200408-23
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
http://security.gentoo.org/
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -

Severity: Low
Title: kdelibs: Cross-domain cookie injection vulnerability
Date: August 24, 2004
Bugs: #61389
ID: 200408-23

- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -

Synopsis
=======

The cookie manager component in kdelibs contains a vulnerability allowing an attacker to potentially gain access to a user's session on a legitimate web server.

KDE 1538 Published by Philipp Esselbach 0

Release 2.3.1 of Rekall, the database front end for KDE (and QT) is now available

KDE 1538 Published by Philipp Esselbach 0

KDbg 1.9.6 (development series, beta stage) has been released

KDE 1538 Published by Philipp Esselbach 0

Three security advisories have been issued today for KDE.

The first advisory concerns the unsafe handling of KDE's temporary directory in certain circumstances. The second advisory relates to the unsafe creation of temporary files by KDE 3.2.x's dcopserver . The third advisory is about a frame injection vulnerability in Konqueror as earlier reported by Heise Online and Secunia

Distributions are expected to have updated binary packages available shortly. All issues mentioned above have also been fixed in the KDE 3.3 Release Candidate 2 that was announced yesterday . The final release of KDE 3.3 is expected later this month.

KDE 1538 Published by Philipp Esselbach 0

KDE 3.3 Beta 2 (Kollege) has been released. Here the announcement:

KDE Project Ships Second Beta of Next Major Release

July 22, 2004 (The Internet) - The KDE Project is pleased to announce the immediate availability of KDE 3.3 Beta 2. The focus of this release, code-named Kollege, is to fix bugs in the run-up to aKademy in late August.

Getting Kollege

KDE 3.3 Beta 2 can be downloaded over the Internet by visiting download.kde.org. Source code and vendor supplied binary packages are available. For additional information on package availability and to read further release notes, please visit the KDE 3.3 Beta 2 information page.

KDE 1538 Published by Philipp Esselbach 0

KDE 3.3 Beta 1 has been released:

KDE Project Ships First Beta of Next Major Release

July 7, 2004 (The Internet) - The KDE Project is pleased to announce the immediate availability of KDE 3.3 Beta 1. As another step towards the aKademy in late August, this release is named Klassroom.

KDE 1538 Published by Philipp Esselbach 0

Version 1.0 of the amaroK audio player has been released

KDE 1538 Published by Philipp Esselbach 0

KDE 3.2.3 has been released. Here the full release announcement:

KDE Project Ships Third Translation and Service Release of the 3.2 Generation GNU/Linux - UNIX Desktop, Offering Enterprises and Governments a Compelling Free and Open Desktop Solution

June 9, 2004 (The INTERNET). The KDE Project today announced the immediate availability of KDE 3.2.3, a maintenance release for the latest generation of the most advanced and powerful free desktop for GNU/Linux and other UNIXes. KDE 3.2.3 ships with a basic desktop and eighteen other packages (PIM, administration, network, edutainment, utilities, multimedia, games, artwork, web development and more). KDE's award-winning tools and applications are available in 51 languages (now including Arabic, Croatian and Upper Sorbian compared to KDE 3.2.2).