Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2006-4514

Опубликовано: 30 нояб. 2006
Источник: nvd
CVSS2: 7.5
EPSS Низкий

Описание

Heap-based buffer overflow in the ole_info_read_metabat function in Gnome Structured File library (libgsf) 1.14.0, and other versions before 1.14.2, allows context-dependent attackers to execute arbitrary code via a large num_metabat value in an OLE document, which causes the ole_init_info function to allocate insufficient memory.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:libgsf:libgsf:1.11.1:*:*:*:*:*:*:*
cpe:2.3:a:libgsf:libgsf:1.13.2:*:*:*:*:*:*:*
cpe:2.3:a:libgsf:libgsf:1.14:*:*:*:*:*:*:*
cpe:2.3:a:libgsf:libgsf:1.14.1:*:*:*:*:*:*:*

EPSS

Процентиль: 84%
0.02208
Низкий

7.5 High

CVSS2

Дефекты

CWE-119

Связанные уязвимости

ubuntu
почти 19 лет назад

Heap-based buffer overflow in the ole_info_read_metabat function in Gnome Structured File library (libgsf) 1.14.0, and other versions before 1.14.2, allows context-dependent attackers to execute arbitrary code via a large num_metabat value in an OLE document, which causes the ole_init_info function to allocate insufficient memory.

redhat
почти 19 лет назад

Heap-based buffer overflow in the ole_info_read_metabat function in Gnome Structured File library (libgsf) 1.14.0, and other versions before 1.14.2, allows context-dependent attackers to execute arbitrary code via a large num_metabat value in an OLE document, which causes the ole_init_info function to allocate insufficient memory.

debian
почти 19 лет назад

Heap-based buffer overflow in the ole_info_read_metabat function in Gn ...

github
больше 3 лет назад

Heap-based buffer overflow in the ole_info_read_metabat function in Gnome Structured File library (libgsf) 1.14.0, and other versions before 1.14.2, allows context-dependent attackers to execute arbitrary code via a large num_metabat value in an OLE document, which causes the ole_init_info function to allocate insufficient memory.

fstec
больше 18 лет назад

Уязвимость операционной системы Gentoo Linux, позволяющая удаленному злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации

EPSS

Процентиль: 84%
0.02208
Низкий

7.5 High

CVSS2

Дефекты

CWE-119