CVE Database
/

CVE-2007-5399

Back to search

CVE-2007-5399

Published: Apr 10, 2008

Modified: Aug 7, 2024

PUBLISHED

Description

Multiple heap-based buffer overflows in emlsr.dll in the EML reader in Autonomy (formerly Verity) KeyView 10.3.0.0, as used by IBM Lotus Notes, allow remote attackers to execute arbitrary code via a long (1) To, (2) Cc, (3) Bcc, (4) From, (5) Date, (6) Subject, (7) Priority, (8) Importance, or (9) X-MSMail-Priority header; (10) a long string at the beginning of an RFC2047 encoded-word in a header; (11) a long text string in an RFC2047 encoded-word in a header; or (12) a long Subject header, related to creation of an associated filename.

VendorProductVersions

n/a

n/a

affected
n/a

References

28209
third-party-advisory
x_refsource_SECUNIA
ADV-2008-1156
vdb-entry
x_refsource_VUPEN
28454
vdb-entry
x_refsource_BID
28210
third-party-advisory
x_refsource_SECUNIA
1019842
vdb-entry
x_refsource_SECTRACK
ADV-2008-1153
vdb-entry
x_refsource_VUPEN

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now