CVE-2007-1074: Buffer Overflow
Published Feb 22, 2007
·Updated
Multiple buffer overflows in NewsBin Pro 5.33 and NewsBin Pro 4.x allow user-assisted remote attackers to execute arbitrary code via a long (1) DataPath or (2) DownloadPath attributed in a (a) NBI file, or (3) a long group field in a (b) NZB file.
Affected Software
2 affected components
DJI Newsbin Pro=4.x
DJI Newsbin Pro=5.33
Event History
Feb 22, 2007
CVE Published
10:28 PM
Feb 23, 2007
CVE Published
via MITRE·03:00 AM
Data Sourced
via MITRE·03:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-1074?
CVE-2007-1074 has a high severity rating due to the potential for remote code execution through multiple buffer overflow vulnerabilities.
2
How do I fix CVE-2007-1074?
To fix CVE-2007-1074, update NewsBin Pro to the latest version that addresses these buffer overflow vulnerabilities.
3
What versions of NewsBin Pro are affected by CVE-2007-1074?
CVE-2007-1074 affects NewsBin Pro versions 4.x and 5.33.
4
What types of files can exploit CVE-2007-1074?
CVE-2007-1074 can be exploited through user-assisted NBI files and NZB files with long fields.
5
Can CVE-2007-1074 be exploited without user interaction?
No, CVE-2007-1074 requires user interaction to initiate the exploit by opening a crafted file.