CVE-2007-1466: Integer Overflow
Integer overflow in the WP6GeneralTextPacket::readContents function in WordPerfect Document importer/exporter (libwpd) before 0.8.9 allows user-assisted remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted WordPerfect file, a different vulnerability than CVE-2007-0002.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2007-1466?
CVE-2007-1466 is classified as a moderate severity vulnerability due to its potential to cause application crashes and execute arbitrary code.
How do I fix CVE-2007-1466?
To fix CVE-2007-1466, upgrade the WordPerfect Document importer/exporter to version 0.8.9 or later.
What systems are affected by CVE-2007-1466?
CVE-2007-1466 affects versions of the WordPerfect Document importer/exporter prior to 0.8.9.
What type of attack is associated with CVE-2007-1466?
CVE-2007-1466 is associated with user-assisted remote attacks that exploit crafted WordPerfect files.
Can CVE-2007-1466 lead to arbitrary code execution?
Yes, CVE-2007-1466 may allow attackers to execute arbitrary code through a specially crafted WordPerfect file.