CVE Database
/

CVE-2007-2666

Back to search

CVE-2007-2666

Published: May 14, 2007

Modified: Aug 7, 2024

PUBLISHED

Description

Stack-based buffer overflow in LexRuby.cxx (SciLexer.dll) in Scintilla 1.73, as used by notepad++ 4.1.1 and earlier, allows user-assisted remote attackers to execute arbitrary code via certain Ruby (.rb) files with long lines. NOTE: this was originally reported as a vulnerability in notepad++.

VendorProductVersions

n/a

n/a

affected
n/a

References

ADV-2007-1794
vdb-entry
x_refsource_VUPEN
3912
exploit
x_refsource_EXPLOIT-DB
25327
third-party-advisory
x_refsource_SECUNIA
ADV-2007-1867
vdb-entry
x_refsource_VUPEN
23961
vdb-entry
x_refsource_BID
notepadplus-rb-bo(34269)
vdb-entry
x_refsource_XF
scintilla-rb-bo(34372)
vdb-entry
x_refsource_XF
36007
vdb-entry
x_refsource_OSVDB
25245
third-party-advisory
x_refsource_SECUNIA

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now