OSVDB ID: 23068

Title: Verity KeyView Viewer SDK htmsr.dll Link Processing Overflow

Info

Disclosure

Feb 10, 2006

Discovery

Unknown

Dates

Exploit

Unknown

Solution

Unknown

Description

An overflow exists in the HTML speed reader component of the KeyView Viewer SDK. The software fails to properly validate file names passed to the 'htmsr.dll' library when a link is clicked, resulting in a buffer overflow. With a specially crafted long file name starting with a 'http', 'ftp' or '//' prefix, an attacker can execute arbitrary code, resulting in a loss of integrity. Note that the vulnerable component is used by IBM Lotus Notes for viewing HTML files.

Classification

Location: Remote / Network Access
Attack Type: Input Manipulation
Impact: Loss of Integrity
Exploit: Exploit Unknown

Solution

Upgrade to version 8.2, 9.1 or higher, as it has been reported to fix this vulnerability. An upgrade is required as there are no known workarounds.

Products

International Business Machines Corporation

Lotus Notes

6.5.3
6.0.4
6.0
6.0.1
6.0.1.1
6.0.1.2
6.0.1.3
6.0.2.1
6.0.2.2
6.0.3
6.0.5
6.5
6.5.1
6.5.2
6.5.2.1
6.5.3.1
7.0

Autonomy

Verity KeyView Viewer SDK

7.0a
7.4

References

Credit

  • Carsten Eiram - Secunia Research


Direct URL: http://osvdb.org/36218