First published: Wed Nov 07 2007(Updated: )
Stack-based buffer overflow in the separate_word function in tokenize.c in Link Grammar 4.1b and possibly other versions, as used in AbiWord Link Grammar 4.2.4, allows remote attackers to execute arbitrary code via a long word, as reachable through the separate_sentence function.
Credit: PSIRT-CNA@flexerasoftware.com
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/4.2.5 | <1. | 1. |
Link Grammar | =4.1b | |
AbiWord | =4.2.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-5395 is classified as a high severity vulnerability due to its potential to allow remote code execution.
To fix CVE-2007-5395, users should upgrade to the latest patched version of Link Grammar or AbiWord that addresses this vulnerability.
CVE-2007-5395 affects Link Grammar version 4.1b and AbiWord Link Grammar version 4.2.4.
Yes, CVE-2007-5395 can be exploited by remote attackers through specially crafted input.
CVE-2007-5395 can enable stack-based buffer overflow attacks that may lead to arbitrary code execution.