CVE-2006-4514

Heap-based buffer overflow in the ole_info_read_metabat function in Gnome Structured File library (libgsf) 1.14.0, and other versions before 1.14.2, allows context-dependent attackers to execute arbitrary code via a large num_metabat value in an OLE document, which causes the ole_init_info function to allocate insufficient memory.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:libgsf:libgsf:1.11.1:*:*:*:*:*:*:*
cpe:2.3:a:libgsf:libgsf:1.13.2:*:*:*:*:*:*:*
cpe:2.3:a:libgsf:libgsf:1.14:*:*:*:*:*:*:*
cpe:2.3:a:libgsf:libgsf:1.14.1:*:*:*:*:*:*:*

History

No history.

Information

Published : 2006-11-30 23:28

Updated : 2024-02-04 17:13


NVD link : CVE-2006-4514

Mitre link : CVE-2006-4514

CVE.ORG link : CVE-2006-4514


JSON object : View

Products Affected

libgsf

  • libgsf
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer