CVE Vulnerabilities

CVE-2007-5406

Published: Apr 10, 2008 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
9.3 HIGH
AV:N/AC:M/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

kpagrdr.dll 2.0.0.2 and 10.3.0.0 in the Applix Presents reader in Autonomy (formerly Verity) KeyView, as used by IBM Lotus Notes, Symantec Mail Security, and activePDF DocConverter, does not properly parse long tokens, which allows remote attackers to cause a denial of service (CPU and memory consumption) via a crafted .ag file.

Affected Software

NameVendorStart VersionEnd Version
Lotus_notesIbm6.0 (including)6.0 (including)
Lotus_notesIbm6.5 (including)6.5 (including)
Lotus_notesIbm7.0 (including)7.0 (including)
Lotus_notesIbm8.0 (including)8.0 (including)
Lotus_notesIbm8.0.1 (including)8.0.1 (including)
Mail_securitySymantec*7.5 (including)
Mail_securitySymantec5.0 (including)5.0 (including)
Mail_securitySymantec5.0.0 (including)5.0.0 (including)
Mail_securitySymantec5.0.1 (including)5.0.1 (including)

References