Antiword 'wordole.c' Buffer Overflow Vulnerability
BID:71386
Info
Antiword 'wordole.c' Buffer Overflow Vulnerability
| Bugtraq ID: | 71386 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2014-8123 |
| Remote: | Yes |
| Local: | No |
| Published: | Dec 01 2014 12:00AM |
| Updated: | Apr 13 2015 09:12PM |
| Credit: | Fabian Keil |
| Vulnerable: |
Gentoo Linux Antiword Antiword 0.37 |
| Not Vulnerable: | |
Discussion
Antiword 'wordole.c' Buffer Overflow Vulnerability
Antiword is prone to a buffer overflow vulnerability because it fails to perform adequate boundary checks.
An attacker can exploit this issue to execute arbitrary code in the context of the application. Failed exploit attempts likely result in denial-of-service conditions.
Antiword 0.37 is vulnerable; other versions may also be affected.
Antiword is prone to a buffer overflow vulnerability because it fails to perform adequate boundary checks.
An attacker can exploit this issue to execute arbitrary code in the context of the application. Failed exploit attempts likely result in denial-of-service conditions.
Antiword 0.37 is vulnerable; other versions may also be affected.
Solution / Fix
Antiword 'wordole.c' Buffer Overflow Vulnerability
Solution:
Reportedly, the issue is fixed; however, Symantec has not confirmed this. Please contact the vendor for more information.
Solution:
Reportedly, the issue is fixed; however, Symantec has not confirmed this. Please contact the vendor for more information.
References
Antiword 'wordole.c' Buffer Overflow Vulnerability
References:
References:
- Antiword Home Page (Antiword)
- Buffer overflow in antiword 0.37 (Fabian Keil)