CVE-2007-5405

Multiple buffer overflows in kpagrdr.dll 2.0.0.2 and 10.3.0.0 in the Applix Presents reader in Autonomy (formerly Verity) KeyView, as used by IBM Lotus Notes, Symantec Mail Security, and activePDF DocConverter, allow remote attackers to execute arbitrary code via a .ag file with (1) a long ENCODING attribute in a *BEGIN tag, (2) a long token, or (3) the initial *BEGIN tag.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:activepdf:docconverter:3.8.2_.5:*:*:*:*:*:*:*
cpe:2.3:a:activepdf:docconverter:3.8.4.0:*:*:*:*:*:*:*
cpe:2.3:a:autonomy:keyview:2.0.0.2:*:*:*:*:*:*:*
cpe:2.3:a:autonomy:keyview:10.3.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:lotus_notes:6.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:lotus_notes:6.5:*:*:*:*:*:*:*
cpe:2.3:a:ibm:lotus_notes:7.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:lotus_notes:7.0.2:*:*:*:*:*:*:*
cpe:2.3:a:ibm:lotus_notes:7.0.3:*:*:*:*:*:*:*
cpe:2.3:a:symantec:mail_security:5.0:*:microsoft_exchange:*:*:*:*:*
cpe:2.3:a:symantec:mail_security:5.0.0:*:smtp:*:*:*:*:*
cpe:2.3:a:symantec:mail_security:5.0.1:*:smtp:*:*:*:*:*
cpe:2.3:a:symantec:mail_security:7.5:*:domino:*:*:*:*:*
cpe:2.3:a:symantec:mail_security_appliance:5.0:*:*:*:*:*:*:*

History

No history.

Information

Published : 2008-04-10 18:05

Updated : 2023-12-10 10:51


NVD link : CVE-2007-5405

Mitre link : CVE-2007-5405

CVE.ORG link : CVE-2007-5405


JSON object : View

Products Affected

autonomy

  • keyview

symantec

  • mail_security_appliance
  • mail_security

ibm

  • lotus_notes

activepdf

  • docconverter
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer