The (1) Kate and (2) Kwrite applications in KDE KDE 3.2.x through 3.4.0 do not properly set the same permissions on the backup file as were set on the original file, which could allow local users and possibly remote attackers to obtain sensitive information.
CVSS Details
- CVSS 3.1 Base Score: 7.5
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Freebsd | — | Upgrade kdebaseUpgrade linux_base-suse | Dec 10, 2025 | Jul 18, 2005 |
| Gentoo Linux | — | Upgrade app-editors/kile. | Oct 30, 2017 | Jul 26, 2005 |
| Suse | — | Upgrade kdelibs3-64bitUpgrade kdelibs3-develUpgrade kdelibs3Upgrade kdelibs3-32bitUpgrade kdelibs3-x86 | Feb 17, 2015 | Jul 26, 2005 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub