Title : Autonomy Verity KeyView SDK 1-2-3 File Handling Buffer Overflow Issue VUPEN ID : VUPEN/ADV-2007-4020 CVE ID : CVE-2007-6593
Rated as : Critical
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2007-11-28
Technical Description
A vulnerability has been identified in Autonomy Verity KeyView SDK, which could be exploited by attackers to cause a denial of service or take complete control of an affected system. This issue is caused by a buffer overflow error in the 1-2-3 file viewer (l123sr.dll) when processing a specially crafted ".123" file, which could be exploited by attackers to crash an affected application or execute arbitrary code by tricking a user into viewing a specially crafted file.