CVE-2009-3930

Multiple integer overflows in Christos Zoulas file before 5.02 allow user-assisted remote attackers to have an unspecified impact via a malformed compound document (aka cdf) file that triggers a buffer overflow.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
9.3 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:N/C:C/I:C/A:C
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 74%
VendorProductVersion
christos_zoulasfile
𝑥
≤ 5.01
christos_zoulasfile
3.30
christos_zoulasfile
3.31
christos_zoulasfile
3.32
christos_zoulasfile
3.33
christos_zoulasfile
3.34
christos_zoulasfile
3.36
christos_zoulasfile
3.37
christos_zoulasfile
3.38
christos_zoulasfile
3.39
christos_zoulasfile
3.40
christos_zoulasfile
3.41
christos_zoulasfile
4.01
christos_zoulasfile
4.02
christos_zoulasfile
4.03
christos_zoulasfile
4.04
christos_zoulasfile
4.06
christos_zoulasfile
4.07
christos_zoulasfile
4.08
christos_zoulasfile
4.09
christos_zoulasfile
4.11
christos_zoulasfile
4.12
christos_zoulasfile
4.13
christos_zoulasfile
4.14
christos_zoulasfile
4.15
christos_zoulasfile
4.16
christos_zoulasfile
4.17
christos_zoulasfile
4.19
christos_zoulasfile
4.20
christos_zoulasfile
4.21
christos_zoulasfile
4.23
christos_zoulasfile
4.24
christos_zoulasfile
4.25
christos_zoulasfile
4.26
christos_zoulasfile
5.00
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
file
bullseye (security)
1:5.39-3+deb11u1
fixed
bullseye
1:5.39-3+deb11u1
fixed
bookworm
1:5.44-3
fixed
sid
1:5.45-3
fixed
trixie
1:5.45-3
fixed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
file
karmic
not-affected
jaunty
not-affected
intrepid
not-affected
hardy
not-affected
dapper
not-affected
Common Weakness Enumeration