FreshPorts - VuXML

This page displays vulnerability information about FreeBSD Ports.

The VUXML data was last processed by FreshPorts on 2024-04-18 11:12:36 UTC

List all Vulnerabilities, by package

List all Vulnerabilities, by date

k68

These are the vulnerabilities relating to the commit you have selected:

VuXML IDDescription
d29dc506-8aa6-11db-bd0d-00123ffe8333wv -- Multiple Integer Overflow Vulnerabilities

Secunia reports:

Some vulnerabilities have been reported in wvWare, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise an application using the library.

The vulnerabilities are caused due to integer overflows within the "wvGetLFO_records()" and "wvGetLFO_PLF()" functions. These can be exploited to cause heap-based buffer overflows by e.g. tricking a user to open a specially crafted Microsoft Word document with an application using the library.


Discovery 2006-10-26
Entry 2006-12-13
wv
< 1.2.3

CVE-2006-4513
http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=433
http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=434
http://secunia.com/advisories/22595/