Summary
The remote host is missing an update to abiword
announced via advisory DSA 579-1.
Solution
https://secure1.securityspace.com/smysecure/catid.html?in=DSA%20579-1
Insight
A buffer overflow vulnerability has been disovered in the wv library, used for converting and previewing word documents. On exploition an attacker could execute arbitrary code with the privileges of the user running the vulnerable application.
For the stable distribution (woody) this problem has been fixed in version 1.0.2+cvs.2002.06.05-1woody2.
The package in the unstable distribution (sid) is not affected.
We recommend that you upgrade your abiword package.
Severity
Classification
-
CVE CVE-2004-0645 -
CVSS Base Score: 10.0
AV:N/AC:L/Au:N/C:C/I:C/A:C
Related Vulnerabilities