First published: Thu Apr 10 2008(Updated: )
Multiple stack-based buffer overflows in foliosr.dll in the Folio Flat File speed reader in Autonomy (formerly Verity) KeyView 10.3.0.0, as used by IBM Lotus Notes, Symantec Mail Security, and activePDF DocConverter, allow remote attackers to execute arbitrary code via a long attribute value in a (1) DI, (2) FD, (3) FT, (4) JD, (5) JL, (6) LE, (7) OB, (8) OD, (9) OL, (10) PN, (11) PS, (12) PW, (13) RD, (14) QL, or (15) TS tag in a .fff file.
Credit: PSIRT-CNA@flexerasoftware.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Lotus Notes | =6.0 | |
Symantec Mail Security Appliance | =5.0 | |
Symantec Mail Security | =5.0.1 | |
Autonomy KeyView | =10.3.0.0 | |
ActivePDF DocConverter | =3.8.4.0 | |
Autonomy KeyView | =2.0.0.2 | |
IBM Lotus Notes | =7.0 | |
IBM Lotus Notes | =7.0.3 | |
Symantec Mail Security | =7.5 | |
IBM Lotus Notes | =6.5 | |
Symantec Mail Security | =5.0 | |
IBM Lotus Notes | =7.0.2 | |
Symantec Mail Security | =5.0.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.