>> KDE kpdf Temporary File Writing Denial of Service Vulnerability
Title : KDE kpdf Temporary File Writing Denial of Service Vulnerability VUPEN ID : VUPEN/ADV-2005-1372 CVE ID : CVE-2005-2097 CWE ID : CWE-
Rated as : Low Risk
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2005-08-10
Technical Description
A vulnerability was identified in KDE, which could be exploited to cause a denial of service. This flaw is due to an error in the KDE pdf viewer (kpdf) that writes files in "$TMPDIR" with infinite size, which could be exploited via a specially crafted PDF file to consume all available disk space.