CVE-2009-3032: Buffer Overflow
Integer overflow in kvolefio.dll 8.5.0.8339 and 10.5.0.0 in the Autonomy KeyView Filter SDK, as used in IBM Lotus Notes 8.5, Symantec Mail Security for Microsoft Exchange 5.0.10 through 5.0.13, and other products, allows context-dependent attackers to execute arbitrary code via a crafted OLE document that triggers a heap-based buffer overflow.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2009-3032?
CVE-2009-3032 has a critical severity rating due to its potential to allow arbitrary code execution by attackers.
How do I fix CVE-2009-3032?
To fix CVE-2009-3032, update the affected software to the latest version where the vulnerability is patched.
Which products are affected by CVE-2009-3032?
CVE-2009-3032 affects products such as IBM Lotus Notes 8.5 and various versions of Symantec Mail Security.
What type of vulnerability is CVE-2009-3032?
CVE-2009-3032 is an integer overflow vulnerability that can be exploited through crafted OLE documents.
Can CVE-2009-3032 be exploited remotely?
Yes, CVE-2009-3032 can be exploited remotely by an attacker via a specially crafted document.