Vulnerabilities (CVE)

Filtered by vendor Kde Subscribe
Filtered by product Paste Applet
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2013-2120 1 Kde 1 Paste Applet 2023-12-10 2.1 LOW 8.4 HIGH
The %{password(...)} macro in pastemacroexpander.cpp in the KDE Paste Applet before 4.10.5 in kdeplasma-addons does not properly generate passwords, which allows context-dependent attackers to bypass authentication via a brute-force attack.
CVE-2013-2213 1 Kde 1 Paste Applet 2023-12-10 2.1 LOW 5.5 MEDIUM
The KRandom::random function in KDE Paste Applet after 4.10.5 in kdeplasma-addons uses the GNU C Library rand function's linear congruential generator, which makes it easier for context-dependent attackers to defeat cryptographic protection mechanisms by predicting the generator output.