Package: wv
Version: 1.0.2-0.1
Severity: Important
Tags: Security

A vulnerability was reported on 26 2006:

http://www.securityfocus.com/bid/20761/

CVE-2006-4513

"[wvWare library] is prone to multiple integer overflow vulnerabilities
due to insufficient bounds checking in the "wvGetLFO_records()" and the
"wvGetLFO_PLF()" functions. This issue may be exploited via a
maliciously crafted Word document. Versions 1.2.2 and prior are
vulnerable."


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Reply via email to