First published: Thu Nov 15 2007(Updated: )
Heap-based buffer overflow in emlsr.dll before 2.0.0.4 in Autonomy (formerly Verity) KeyView Viewer, Filter, and Export SDK allows remote attackers to execute arbitrary code via a long Content-Type header line in an EML file. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Autonomy KeyView | <=2.0 | |
Autonomy KeyView | <=2.0 | |
Autonomy KeyView | <=2.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-6008 is considered a critical vulnerability due to its potential for remote code execution.
To fix CVE-2007-6008, upgrade Autonomy KeyView to version 2.0.0.5 or later.
CVE-2007-6008 is classified as a heap-based buffer overflow vulnerability.
CVE-2007-6008 affects users of Autonomy's KeyView Viewer, Filter, and Export SDK versions prior to 2.0.0.4.
Yes, CVE-2007-6008 can be exploited remotely via a crafted EML file with a long Content-Type header.