CVE-2010-1525: Buffer Overflow
Integer underflow in the SpreadSheet Lotus 123 reader (wkssr.dll) in Autonomy KeyView 10.4 and 10.9, as used in multiple IBM, Symantec, and other products, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted size for an unspecified record type, which triggers a heap-based buffer overflow.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2010-1525?
CVE-2010-1525 has a medium severity rating due to its potential for denial of service and possible arbitrary code execution.
How do I fix CVE-2010-1525?
To fix CVE-2010-1525, update to the latest version of Autonomy KeyView SDKs that address this vulnerability.
What products are affected by CVE-2010-1525?
CVE-2010-1525 affects multiple products that utilize Autonomy KeyView 10.4 and 10.9 SDK versions.
What type of vulnerability is CVE-2010-1525?
CVE-2010-1525 is an integer underflow vulnerability that can lead to denial of service and potentially allow remote code execution.
Can CVE-2010-1525 be exploited remotely?
Yes, CVE-2010-1525 can be exploited remotely through crafted inputs to trigger the vulnerability.