CVE-2008-4564

CWE-119Buffer Overflow3 documents3 sources
Severity
9.3CRITICAL
EPSS
50.8%
top 2.14%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMar 18
Latest updateMay 2

Description

Stack-based buffer overflow in wp6sr.dll in the Autonomy KeyView SDK 10.4 and earlier, as used in IBM Lotus Notes, Symantec Mail Security (SMS) products, Symantec BrightMail Appliance products, and Symantec Data Loss Prevention (DLP) products, allows remote attackers to execute arbitrary code via a crafted Word Perfect Document (WPD) file.

CVSS vector

AV:N/AC:M/C:C/I:C/A:CExploitability: 8.6 | Impact: 10.0

Affected Packages9 packages

🔴Vulnerability Details

2
GHSA
GHSA-6p66-f3jg-vmhh: Stack-based buffer overflow in wp6sr2022-05-02
CVEList
CVE-2008-4564: Stack-based buffer overflow in wp6sr2009-03-18
CVE-2008-4564 (CRITICAL CVSS 9.3) | Stack-based buffer overflow in wp6s | cvebase.io