CVE-2007-1463

Format string vulnerability in Inkscape before 0.45.1 allows user-assisted remote attackers to execute arbitrary code via format string specifiers in a URI, which is not properly handled by certain dialogs.
References
Link Resource
http://secunia.com/advisories/24584
http://secunia.com/advisories/24597
http://secunia.com/advisories/24615
http://secunia.com/advisories/24661
http://secunia.com/advisories/24859
http://secunia.com/advisories/25072
http://sourceforge.net/project/shownotes.php?group_id=93438&release_id=495106 Patch
http://www.gentoo.org/security/en/glsa/glsa-200704-10.xml
http://www.mandriva.com/security/advisories?name=MDKSA-2007:069
http://www.novell.com/linux/security/advisories/2007_8_sr.html
http://www.securityfocus.com/archive/1/463710/100/0/threaded
http://www.securityfocus.com/bid/23070
http://www.securityfocus.com/bid/23138
http://www.ubuntu.com/usn/usn-438-1 Vendor Advisory
http://www.vupen.com/english/advisories/2007/1059
https://exchange.xforce.ibmcloud.com/vulnerabilities/33163
https://issues.rpath.com/browse/RPL-1170
http://secunia.com/advisories/24584
http://secunia.com/advisories/24597
http://secunia.com/advisories/24615
http://secunia.com/advisories/24661
http://secunia.com/advisories/24859
http://secunia.com/advisories/25072
http://sourceforge.net/project/shownotes.php?group_id=93438&release_id=495106 Patch
http://www.gentoo.org/security/en/glsa/glsa-200704-10.xml
http://www.mandriva.com/security/advisories?name=MDKSA-2007:069
http://www.novell.com/linux/security/advisories/2007_8_sr.html
http://www.securityfocus.com/archive/1/463710/100/0/threaded
http://www.securityfocus.com/bid/23070
http://www.securityfocus.com/bid/23138
http://www.ubuntu.com/usn/usn-438-1 Vendor Advisory
http://www.vupen.com/english/advisories/2007/1059
https://exchange.xforce.ibmcloud.com/vulnerabilities/33163
https://issues.rpath.com/browse/RPL-1170
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:o:ubuntu:ubuntu_linux:5.10:*:*:*:*:*:*:*
cpe:2.3:o:ubuntu:ubuntu_linux:6.06:*:*:*:*:*:*:*
cpe:2.3:o:ubuntu:ubuntu_linux:6.06_lts:*:*:*:*:*:*:*
cpe:2.3:o:ubuntu:ubuntu_linux:6.10:*:i386:*:*:*:*:*
OR cpe:2.3:a:inkscape:inkscape:0.40:*:*:*:*:*:*:*
cpe:2.3:a:inkscape:inkscape:0.41:*:*:*:*:*:*:*
cpe:2.3:a:inkscape:inkscape:0.42:*:*:*:*:*:*:*
cpe:2.3:a:inkscape:inkscape:0.42.1:*:*:*:*:*:*:*
cpe:2.3:a:inkscape:inkscape:0.42.2:*:*:*:*:*:*:*
cpe:2.3:a:inkscape:inkscape:0.43:*:*:*:*:*:*:*
cpe:2.3:a:inkscape:inkscape:0.44:*:*:*:*:*:*:*

History

21 Nov 2024, 00:28

Type Values Removed Values Added
References () http://secunia.com/advisories/24584 - () http://secunia.com/advisories/24584 -
References () http://secunia.com/advisories/24597 - () http://secunia.com/advisories/24597 -
References () http://secunia.com/advisories/24615 - () http://secunia.com/advisories/24615 -
References () http://secunia.com/advisories/24661 - () http://secunia.com/advisories/24661 -
References () http://secunia.com/advisories/24859 - () http://secunia.com/advisories/24859 -
References () http://secunia.com/advisories/25072 - () http://secunia.com/advisories/25072 -
References () http://sourceforge.net/project/shownotes.php?group_id=93438&release_id=495106 - Patch () http://sourceforge.net/project/shownotes.php?group_id=93438&release_id=495106 - Patch
References () http://www.gentoo.org/security/en/glsa/glsa-200704-10.xml - () http://www.gentoo.org/security/en/glsa/glsa-200704-10.xml -
References () http://www.mandriva.com/security/advisories?name=MDKSA-2007:069 - () http://www.mandriva.com/security/advisories?name=MDKSA-2007:069 -
References () http://www.novell.com/linux/security/advisories/2007_8_sr.html - () http://www.novell.com/linux/security/advisories/2007_8_sr.html -
References () http://www.securityfocus.com/archive/1/463710/100/0/threaded - () http://www.securityfocus.com/archive/1/463710/100/0/threaded -
References () http://www.securityfocus.com/bid/23070 - () http://www.securityfocus.com/bid/23070 -
References () http://www.securityfocus.com/bid/23138 - () http://www.securityfocus.com/bid/23138 -
References () http://www.ubuntu.com/usn/usn-438-1 - Vendor Advisory () http://www.ubuntu.com/usn/usn-438-1 - Vendor Advisory
References () http://www.vupen.com/english/advisories/2007/1059 - () http://www.vupen.com/english/advisories/2007/1059 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/33163 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/33163 -
References () https://issues.rpath.com/browse/RPL-1170 - () https://issues.rpath.com/browse/RPL-1170 -

Information

Published : 2007-03-21 19:19

Updated : 2024-11-21 00:28


NVD link : CVE-2007-1463

Mitre link : CVE-2007-1463

CVE.ORG link : CVE-2007-1463


JSON object : View

Products Affected

ubuntu

  • ubuntu_linux

inkscape

  • inkscape