Multiple integer overflows in vclmi.dll in the visual class library module in IBM Lotus Symphony before 3.0.1 might allow remote attackers to execute arbitrary code via an embedded (1) JPEG or (2) PNG image object in a Symphony document that triggers a heap-based buffer overflow, as demonstrated by a .doc file.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: ibm

Published: 2012-01-23T15:00:00

Updated: 2017-08-28T12:57:01

Reserved: 2011-12-14T00:00:00


Link: CVE-2012-0192

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2012-01-23T15:55:00.943

Modified: 2017-08-29T01:30:51.693


Link: CVE-2012-0192

JSON object: View

cve-icon Redhat Information

No data.

CWE