6.5
CVSSv2

CVE-2006-2197

Published: 15/06/2006 Updated: 03/10/2018
CVSS v2 Base Score: 6.5 | Impact Score: 6.4 | Exploitability Score: 8
VMScore: 578
Vector: AV:N/AC:L/Au:S/C:P/I:P/A:P

Vulnerability Summary

Integer overflow in wv2 prior to 0.2.3 might allow context-dependent malicious users to execute arbitrary code via a crafted Microsoft Word document.

Vulnerable Product Search on Vulmon Subscribe to Product

wvware wv2

wvware wv2 0.2.2

Vendor Advisories

libwv2 did not sufficiently check the validity of its input Certain invalid Word documents caused a buffer overflow By tricking a user into opening a specially crafted Word file with an application that uses libwv2, this could be exploited to execute arbitrary code with the user’s privileges ...
A boundary checking error has been discovered in wv2, a library for accessing Microsoft Word documents, which can lead to an integer overflow induced by processing word files The old stable distribution (woody) does not contain wv2 packages For the stable distribution (sarge) this problem has been fixed in version 022-1sarge1 For the unstable d ...