CVE-2010-0126
17.08.2010, 20:00
Heap-based buffer overflow in an unspecified library in Autonomy KeyView 10.4 and 10.9, as used in multiple IBM, Symantec, and other products, allows remote attackers to execute arbitrary code via a crafted compound file, as demonstrated using a Quattro Pro file, which is not properly handled by the Quattro speed reader (qpssr.dll).Enginsight
Vendor | Product | Version |
---|---|---|
autonomy | keyview_export_sdk | 10.4 |
autonomy | keyview_export_sdk | 10.9 |
autonomy | keyview_filter_sdk | 10.4 |
autonomy | keyview_filter_sdk | 10.9 |
autonomy | keyview_viewer_sdk | 10.4 |
autonomy | keyview_viewer_sdk | 10.9 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References