Security Advisory

CVE-2006-4514

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2006-11-30 23:00:00
Last updated 2024-08-07 19:14:47
Assigner mitre
State PUBLISHED

Description

Heap-based buffer overflow in the ole_info_read_metabat function in Gnome Structured File library (libgsf) 1.14.0, and other versions before 1.14.2, allows context-dependent attackers to execute arbitrary code via a large num_metabat value in an OLE document, which causes the ole_init_info function to allocate insufficient memory.