CVE-2007-3314
Stack-based buffer overflow in peviewer.spl in Altap Servant Salamander 2.5 with Portable Executable Viewer 2.02 (English Trial), and 2.0 with Portable Executable Viewer 1.00 (English Trial), allows remote attackers to execute arbitrary code via a long…
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 43.4%, higher than 99% of all known CVEs. Patch or mitigate before the next change window.
Description
Stack-based buffer overflow in peviewer.spl in Altap Servant Salamander 2.5 with Portable Executable Viewer 2.02 (English Trial), and 2.0 with Portable Executable Viewer 1.00 (English Trial), allows remote attackers to execute arbitrary code via a long PDB debug filename in a PE file.
- CVSS 2.0
- 6.8 MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
- EPSS
- 43.41% probability · 99th percentile
- CISA KEV
- Not listed
- Affected
- altap/portable executable viewer · altap/servant salamander
- Source
- cve@mitre.org
References
- http://osvdb.org/37579
- http://secunia.com/advisories/25732Vendor Advisory
- http://vuln.sg/salamander25-en.htmlExploit
- http://www.securityfocus.com/bid/24557
- http://www.vupen.com/english/advisories/2007/2268
- https://exchange.xforce.ibmcloud.com/vulnerabilities/34938
- http://osvdb.org/37579
- http://secunia.com/advisories/25732Vendor Advisory
- http://vuln.sg/salamander25-en.htmlExploit
- http://www.securityfocus.com/bid/24557
- http://www.vupen.com/english/advisories/2007/2268
- https://exchange.xforce.ibmcloud.com/vulnerabilities/34938
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.