vendor:
UnRTF
by:
Unknown
7.5
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: UnRTF
Affected Version From: Unknown
Affected Version To: Unknown
Patch Exists: NO
Related CWE: CVE-2004-1184
CPE: a:gnu:unrtf
Platforms Tested:
Unknown
GNU UnRTF Buffer Overflow Vulnerability
GNU UnRTF is prone to a buffer overflow vulnerability. This issue is exposed when the program converts RTF font table data. Since RTF documents may originate from an external or untrusted source, this vulnerability is considered to be remote in nature. Successful exploitation will result in execution of arbitrary code.
Mitigation:
Apply the latest patches or updates provided by the vendor. Avoid opening RTF documents from untrusted or unknown sources.