[原文]Konqueror in KDE 3.0.3 allows remote attackers to cause a denial of service (core dump) via a web page that begins with a "xFFxFE" byte sequence and a large number of CRLF sequences, as demonstrated using freeze.htm.
KDE Konqueror has been reported prone to a denial of service vulnerability when rendering a HTML page that contains malformed data.
Although unconfirmed, code execution may be possible.
The precise technical details of this vulnerability are currently unknown. This BID will be updated, as further information is available.
perl -e "print qq'\xFF\xFE'; print qq'\r\r\n' x 30000" > freeze.htm