CVE-2007-0619: Critical severity chmlib chmlib vulnerability
Published Jan 31, 2007
·Updated
chmlib before 0.39 allows user-assisted remote attackers to execute arbitrary code via a crafted page block length in a CHM file, which triggers memory corruption.
Affected Software
1 affected component
chmlib chmlib<=0.38
Remediation
Patch Available
Event History
Jan 31, 2007
CVE Published
11:28 AM
CVE Published
via MITRE·04:00 PM
Data Sourced
via MITRE·04:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-0619?
CVE-2007-0619 has a medium severity rating due to potential arbitrary code execution risks.
2
How do I fix CVE-2007-0619?
To fix CVE-2007-0619, upgrade chmlib to version 0.39 or later.
3
What types of attacks are possible with CVE-2007-0619?
CVE-2007-0619 allows attackers to execute arbitrary code via crafted CHM files, exploiting memory corruption.
4
Which versions of chmlib are affected by CVE-2007-0619?
CVE-2007-0619 affects chmlib versions prior to 0.39.
5
Is user interaction required for CVE-2007-0619 to be exploited?
Yes, user interaction is required as the attack vector involves opening a malicious CHM file.