Back to search
CVE-2007-5405
Published: Apr 10, 2008
Modified: Aug 7, 2024
PUBLISHED
Description
Multiple buffer overflows in kpagrdr.dll 2.0.0.2 and 10.3.0.0 in the Applix Presents reader in Autonomy (formerly Verity) KeyView, as used by IBM Lotus Notes, Symantec Mail Security, and activePDF DocConverter, allow remote attackers to execute arbitrary code via a .ag file with (1) a long ENCODING attribute in a *BEGIN tag, (2) a long token, or (3) the initial *BEGIN tag.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
28140
third-party-advisory
x_refsource_SECUNIA
29342
third-party-advisory
x_refsource_SECUNIA
http://secunia.com/secunia_research/2007-97/advisory/
x_refsource_MISC
27763
third-party-advisory
x_refsource_SECUNIA
autonomy-keyview-applix-multiple-bo(41721)
vdb-entry
x_refsource_XF
http://www.symantec.com/avcenter/security/Content/2008.04.08e.html
x_refsource_CONFIRM
28209
third-party-advisory
x_refsource_SECUNIA
20080414 Secunia Research: Symantec Mail Security Applix Graphics ParsingVulnerabilities
mailing-list
x_refsource_BUGTRAQ
http://secunia.com/secunia_research/2007-96/advisory/
x_refsource_MISC
ADV-2008-1156
vdb-entry
x_refsource_VUPEN
http://www-1.ibm.com/support/docview.wss?rs=463&uid=swg21298453
x_refsource_CONFIRM
28454
vdb-entry
x_refsource_BID
http://secunia.com/secunia_research/2007-95/advisory/
x_refsource_MISC
28210
third-party-advisory
x_refsource_SECUNIA
1019844
vdb-entry
x_refsource_SECTRACK
20080414 Secunia Research: Lotus Notes Applix Graphics ParsingVulnerabilities
mailing-list
x_refsource_BUGTRAQ
ADV-2008-1154
vdb-entry
x_refsource_VUPEN
20080414 Secunia Research: Autonomy Keyview Applix Graphics ParsingVulnerabilities
mailing-list
x_refsource_BUGTRAQ
http://secunia.com/secunia_research/2007-98/advisory/
x_refsource_MISC
20080414 Secunia Research: activePDF DocConverter Applix Graphics ParsingVulnerabilities
mailing-list
x_refsource_BUGTRAQ
1019805
vdb-entry
x_refsource_SECTRACK
ADV-2008-1153
vdb-entry
x_refsource_VUPEN
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now