PT-2007-3101 · Corel · Corel Wordperfect Office

Published

2007-03-28

·

Updated

2018-10-16

·

CVE-2007-1735

CVSS v2.0

9.3

High

VectorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions: Corel WordPerfect Office version 13.0.0.565
Description: The issue is a stack-based buffer overflow that allows remote attackers to execute arbitrary code. This is achieved by using a long printer selection (PRS) name in a Wordperfect document.
Recommendations: For Corel WordPerfect Office version 13.0.0.565, avoid using long printer selection names in Wordperfect documents until a patch is available. As a temporary workaround, consider restricting the use of printer selection names to minimize the risk of exploitation.

Exploit

Fix

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2007-1735

Affected Products

Corel Wordperfect Office