Heap-based buffer overflow in an unspecified library in Autonomy KeyView 10.4 and 10.9, as used in multiple IBM, Symantec, and other products, allows remote malicious users to execute arbitrary code via a crafted compound file, as demonstrated using a Quattro Pro file, which is not properly handled by the Quattro speed reader (qpssr.dll).
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
autonomy keyview export sdk 10.9 |
||
autonomy keyview filter sdk 10.4 |
||
autonomy keyview export sdk 10.4 |
||
autonomy keyview viewer sdk 10.9 |
||
autonomy keyview filter sdk 10.9 |
||
autonomy keyview viewer sdk 10.4 |