Advisories Blog | G5 Cyber Security

Autonomy KeyView wkssr.dll Integer Underflow Vulnerability

Secunia Research has discovered a vulnerability in Autonomy KeyView, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a vulnerable system. The vulnerability is caused by an integer underflow error in the SpreadSheet Lotus 123 reader (wkssr.dll) when parsing the size of a specific record type. This can be exploited to cause a heap-based buffer overflow via a specially crafted file. Successful exploitation may allow execution of arbitrary code. Autonomy KeyView versions 10.4 and 10.9 are affected.

 

You can download this advisory from the following link: https://packetstormsecurity.com/files/download/92245/secunia-wkssriu.txt

Source: https://packetstormsecurity.com/files/92245/Autonomy-KeyView-wkssr.dll-Integer-Underflow-Vulnerability.html

Exit mobile version