cve/2007/CVE-2007-6593.md
2024-05-26 14:27:05 +02:00

18 lines
891 B
Markdown

### [CVE-2007-6593](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-6593)
![](https://img.shields.io/static/v1?label=Product&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Vulnerability&message=n%2Fa&color=brighgreen)
### Description
Multiple stack-based buffer overflows in l123sr.dll in Autonomy (formerly Verity) KeyView SDK, as used by IBM Lotus Notes 5.x through 8.x, allow user-assisted remote attackers to execute arbitrary code via the (1) Length and (2) Value fields for certain Types in a Lotus 1-2-3 (.123) file in the Worksheet File (WKS) format, as demonstrated by a file with a crafted SRANGE record, a different vulnerability than CVE-2007-5909.
### POC
#### Reference
- http://securityreason.com/securityalert/3499
#### Github
No PoCs found on GitHub currently.