CVE Vulnerabilities

CVE-2007-1466

Published: Mar 16, 2007 | Modified: Oct 16, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6.8 MEDIUM
AV:N/AC:M/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
UNTRIAGED

Integer overflow in the WP6GeneralTextPacket::_readContents function in WordPerfect Document importer/exporter (libwpd) before 0.8.9 allows user-assisted remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted WordPerfect file, a different vulnerability than CVE-2007-0002.

Affected Software

Name Vendor Start Version End Version
Wordperfect_document_importer-exporter Sourceforge * 0.8.8 (including)
Red Hat Enterprise Linux 3 RedHat openoffice.org-0:1.1.2-38.2.0.EL3 *
Red Hat Enterprise Linux 4 RedHat openoffice.org-0:1.1.5-10.6.0.EL4 *
Red Hat Enterprise Linux 5 RedHat libwpd-0:0.8.7-3.el5 *
Libwpd Ubuntu dapper *
Libwpd Ubuntu devel *
Libwpd Ubuntu edgy *
Libwpd Ubuntu feisty *

References