Files ≈ Packet Storm Packet Storm - Information Security News, Files, Tools, Exploits, Advisories and Whitepapers http://packetstormsecurity.org/ en-us Mon, 28 May 2012 04:52:31 GMT Packet Storm 144400 http://packetstormsecurity.org/ http://www.google-analytics.com/__utm.gif?utmwv=1.3&utmn=1034733254&utmcs=ISO-8859-1&utmsr=31337x31337&utmsc=32-bit&utmul=en-us&utmje=0&utmfl=-&utmcn=1&utmdt=Files%u2248%20Packet%20Storm&utmhn=packetstormsecurity.org&utmr=-&utmp=%2F1007-advisories%2Fsecunia-autonomykvrp.txt%2F&utmac=UA-18885198-1&utmcc=__utma%3D32867617.1034733254.1338180751.1338180751.1338180751.1%3B%2B__utmz%3D32867617.1338180751.1.1.utmccn%3D(direct)%7Cutmcsr%3D(direct)%7Cutmcmd%3D(none) Autonomy KeyView wkssr.dll Record Parsing Buffer Overflows http://packetstormsecurity.org/files/92249/secunia-autonomykvrp.txt http://packetstormsecurity.org/files/92249/secunia-autonomykvrp.txt http://packetstormsecurity.org/files/92249/Autonomy-KeyView-wkssr.dll-Record-Parsing-Buffer-Overflows.html Wed, 28 Jul 2010 18:18:24 GMT Secunia Research has discovered two vulnerabilities in Autonomy KeyView, which can be exploited by malicious people to compromise a vulnerable system. The vulnerabilities are caused by boundary errors in the SpreadSheet Lotus 123 reader (wkssr.dll) when parsing certain records. This can be exploited to cause stack-based buffer overflows via specially crafted files. Successful exploitation allows execution of arbitrary code. Autonomy KeyView versions 10.4 and 10.9 are affected.