Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2005-2972

Опубликовано: 23 окт. 2005
Источник: nvd
CVSS2: 5.1
EPSS Низкий

Описание

Multiple stack-based buffer overflows in the RTF import feature in AbiWord before 2.2.11 allow user-assisted attackers to execute arbitrary code via an RTF file with long identifiers, which are not properly handled in the (1) ParseLevelText, (2) getCharsInsideBrace, (3) HandleLists, (4) or (5) HandleAbiLists functions in ie_imp_RTF.cpp, a different vulnerability than CVE-2005-2964.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:abisource:community_abiword:*:*:*:*:*:*:*:*
Версия до 2.2.10 (включая)

EPSS

Процентиль: 85%
0.02704
Низкий

5.1 Medium

CVSS2

Дефекты

CWE-119

Связанные уязвимости

ubuntu
почти 20 лет назад

Multiple stack-based buffer overflows in the RTF import feature in AbiWord before 2.2.11 allow user-assisted attackers to execute arbitrary code via an RTF file with long identifiers, which are not properly handled in the (1) ParseLevelText, (2) getCharsInsideBrace, (3) HandleLists, (4) or (5) HandleAbiLists functions in ie_imp_RTF.cpp, a different vulnerability than CVE-2005-2964.

debian
почти 20 лет назад

Multiple stack-based buffer overflows in the RTF import feature in Abi ...

github
больше 3 лет назад

Multiple stack-based buffer overflows in the RTF import feature in AbiWord before 2.2.11 allow user-assisted attackers to execute arbitrary code via an RTF file with long identifiers, which are not properly handled in the (1) ParseLevelText, (2) getCharsInsideBrace, (3) HandleLists, (4) or (5) HandleAbiLists functions in ie_imp_RTF.cpp, a different vulnerability than CVE-2005-2964.

EPSS

Процентиль: 85%
0.02704
Низкий

5.1 Medium

CVSS2

Дефекты

CWE-119