PT-2010-1951 · Hewlett Packard+1 · Autonomy Keyview+1

Published

2010-08-17

·

Updated

2013-02-07

·

CVE-2010-0135

CVSS v2.0

9.3

High

VectorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions WordPerfect versions 5.x Autonomy KeyView versions 10.4 through 10.9
Description The issue is related to a heap-based buffer overflow in the WordPerfect 5.x reader, which is used in Autonomy KeyView. This allows remote attackers to execute arbitrary code via unspecified vectors related to data blocks.
Recommendations For Autonomy KeyView versions 10.4 through 10.9, consider disabling the WordPerfect 5.x reader until a patch is available. For WordPerfect version 5.x, restrict access to the wosr.dll module to minimize the risk of exploitation.

Fix

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2010-0135

Affected Products

Autonomy Keyview
Wordperfect