First published: Wed Mar 18 2009(Updated: )
Stack-based buffer overflow in wp6sr.dll in the Autonomy KeyView SDK 10.4 and earlier, as used in IBM Lotus Notes, Symantec Mail Security (SMS) products, Symantec BrightMail Appliance products, and Symantec Data Loss Prevention (DLP) products, allows remote attackers to execute arbitrary code via a crafted Word Perfect Document (WPD) file.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Symantec Data Loss Prevention | =7.0 | |
Autonomy KeyView | =10.3 | |
IBM Notes | =6.5.2 | |
IBM Notes | =6.5.5 | |
Symantec Mail Security | =7.5..4.29 | |
IBM Notes | =6.0 | |
Autonomy KeyView | =9.2.0 | |
IBM Notes | =6.5.5 | |
Symantec Mail Security | =5.0.1 | |
Autonomy KeyView | <=10.4 | |
Symantec Mail Security | =6.0.7-microsoft_exchange | |
Autonomy KeyView | =10.3 | |
Symantec Endpoint Protection | =8.1 | |
Autonomy KeyView | =10 | |
IBM Notes | =6.0.1 | |
Autonomy KeyView | =10 | |
Autonomy KeyView | <=10.4 | |
Symantec Mail Security | =6.0.6-microsoft_exchange | |
Autonomy KeyView | =2.0 | |
Symantec Data Loss Prevention | =8.1 | |
Symantec Endpoint Protection | =8.0 | |
IBM Notes | =5.0.3 | |
IBM Notes | =6.5.6 | |
Symantec Mail Security | =5.0.1.181 | |
Symantec Mail Security | =7.5.3.25 | |
IBM Notes | =5.0.12 | |
IBM Notes | =6.0.2 | |
Symantec Data Loss Prevention | =8.0 | |
IBM Notes | =7.0 | |
Autonomy KeyView | =10.3 | |
Autonomy KeyView | =10 | |
Autonomy KeyView | <=10.4 | |
Symantec Data Loss Prevention | =8.1 | |
Symantec Data Loss Prevention | =8.1 | |
Symantec Mail Security | =5.0.11 | |
IBM Notes | =6.0.4 | |
Autonomy KeyView | =9.2.0 | |
Symantec Mail Security | =5.0.0.24 | |
IBM Notes | =6.5.4 | |
IBM Notes | =6.5.6 | |
IBM Notes | =6.5.1 | |
IBM Notes | =7.0.3 | |
IBM Notes | =6.0.5 | |
Symantec Mail Security | =5.0.1.182 | |
Symantec Mail Security | =7.5.5.32 | |
Symantec Mail Security | =5.0.1.200 | |
IBM Notes | =6.5 | |
IBM Notes | =7.0.2 | |
IBM Notes | =8.0 | |
Symantec Endpoint Protection | =7.0 | |
Symantec Endpoint Protection | =8.1 | |
Symantec Data Loss Prevention | =8.0 | |
IBM Notes | =7.0.1 | |
Symantec Mail Security | =5.0.1.189 | |
IBM Notes | =6.5.3 | |
Symantec Mail Security | =5.0.0 | |
Autonomy KeyView | =2.0 | |
Autonomy KeyView | =9.2.0 | |
Symantec Mail Security | =5.0 | |
Symantec Deployment Solution | ||
IBM Notes | =6.0.3 | |
IBM Notes | =7.0.2 | |
IBM Notes | =6.5.5 | |
Symantec Mail Security | =5.0.10 | |
Symantec Mail Security | =5.0.0 | |
Symantec Brightmail and Messaging Gateway | =5.0 | |
Autonomy KeyView | =2.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-4564 is classified as a critical vulnerability due to the potential for remote code execution.
To fix CVE-2008-4564, update the Autonomy KeyView SDK and related products to version 10.5 or later.
CVE-2008-4564 affects Autonomy KeyView SDK 10.4 and earlier, IBM Lotus Notes, and various Symantec products.
CVE-2008-4564 is a stack-based buffer overflow vulnerability.
Yes, CVE-2008-4564 can be exploited remotely by attackers to execute arbitrary code.