Search CVE reports


Toggle filters

1 – 6 of 6 results


CVE-2025-32901

Medium priority
Needs evaluation

In KDE Connect before 1.33.0 on Android, malicious device IDs (sent via broadcast UDP) could cause an application crash.

1 affected package

kdeconnect

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
kdeconnect Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-32900

Medium priority
Needs evaluation

(In the KDE Connect information-exchange protocol before 2025-04-18, a ...)

1 affected package

kdeconnect

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
kdeconnect Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-32899

Medium priority
Needs evaluation

In KDE Connect before 1.33.0 on Android, a packet can be crafted that causes two paired devices to unpair. Specifically, it is an invalid discovery packet sent over broadcast UDP.

1 affected package

kdeconnect

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
kdeconnect Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-32898

Medium priority
Needs evaluation

[Unknown description]

2 affected packages

gnome-shell-extension-gsconnect, kdeconnect

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gnome-shell-extension-gsconnect Needs evaluation Needs evaluation Needs evaluation
kdeconnect Needs evaluation Needs evaluation Needs evaluation Needs evaluation
Show less packages

CVE-2025-66270

Medium priority

Some fixes available 1 of 3

security update

2 affected packages

kdeconnect, gnome-shell-extension-gsconnect

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
kdeconnect Not affected Not affected Not affected Not affected
gnome-shell-extension-gsconnect Not affected Not affected Not affected
Show less packages

CVE-2020-26164

Medium priority
Vulnerable

In kdeconnect-kde (aka KDE Connect) before 20.08.2, an attacker on the local network could send crafted packets that trigger use of large amounts of CPU, memory, or network connection slots, aka a Denial of Service attack.

1 affected package

kdeconnect

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
kdeconnect Vulnerable Vulnerable Vulnerable Vulnerable
Show less packages