VYPR

Paste Applet

by KDE

CVEs (2)

  • CVE-2013-2120HigFeb 11, 2020
    risk 0.55cvss 8.4epss 0.01

    The %{password(...)} macro in pastemacroexpander.cpp in the KDE Paste Applet before 4.10.5 in kdeplasma-addons does not properly generate passwords, which allows context-dependent attackers to bypass authentication via a brute-force attack.

  • CVE-2013-2213MedFeb 11, 2020
    risk 0.36cvss 5.5epss 0.00

    The KRandom::random function in KDE Paste Applet after 4.10.5 in kdeplasma-addons uses the GNU C Library rand function's linear congruential generator, which makes it easier for context-dependent attackers to defeat cryptographic protection mechanisms by predicting the generator…