Unrated severityNVD Advisory· Published Apr 10, 2008· Updated Apr 23, 2026
CVE-2007-6020
CVE-2007-6020
Description
Multiple stack-based buffer overflows in foliosr.dll in the Folio Flat File speed reader in Autonomy (formerly Verity) KeyView 10.3.0.0, as used by IBM Lotus Notes, Symantec Mail Security, and activePDF DocConverter, allow remote attackers to execute arbitrary code via a long attribute value in a (1) DI, (2) FD, (3) FT, (4) JD, (5) JL, (6) LE, (7) OB, (8) OD, (9) OL, (10) PN, (11) PS, (12) PW, (13) RD, (14) QL, or (15) TS tag in a .fff file.
Affected products
13- cpe:2.3:a:activepdf:docconverter:3.8.4.0:*:*:*:*:*:*:*
cpe:2.3:a:autonomy:keyview:10.3.0.0:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:autonomy:keyview:10.3.0.0:*:*:*:*:*:*:*
- cpe:2.3:a:autonomy:keyview:2.0.0.2:*:*:*:*:*:*:*
cpe:2.3:a:ibm:lotus_notes:6.0:*:*:*:*:*:*:*+ 4 more
- cpe:2.3:a:ibm:lotus_notes:6.0:*:*:*:*:*:*:*
- cpe:2.3:a:ibm:lotus_notes:6.5:*:*:*:*:*:*:*
- cpe:2.3:a:ibm:lotus_notes:7.0:*:*:*:*:*:*:*
- cpe:2.3:a:ibm:lotus_notes:7.0.2:*:*:*:*:*:*:*
- cpe:2.3:a:ibm:lotus_notes:7.0.3:*:*:*:*:*:*:*
cpe:2.3:a:symantec:mail_security:5.0.0:*:smtp:*:*:*:*:*+ 3 more
- cpe:2.3:a:symantec:mail_security:5.0.0:*:smtp:*:*:*:*:*
- cpe:2.3:a:symantec:mail_security:5.0.1:*:smtp:*:*:*:*:*
- cpe:2.3:a:symantec:mail_security:5.0:*:microsoft_exchange:*:*:*:*:*
- cpe:2.3:a:symantec:mail_security:7.5:*:domino:*:*:*:*:*
- cpe:2.3:a:symantec:mail_security_appliance:5.0:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
22- secunia.com/advisories/27763nvdVendor Advisory
- secunia.com/advisories/28140nvdVendor Advisory
- secunia.com/advisories/28209nvdVendor Advisory
- secunia.com/advisories/28210nvdVendor Advisory
- secunia.com/advisories/29342nvdVendor Advisory
- secunia.com/secunia_research/2007-104/advisory/nvdVendor Advisory
- secunia.com/secunia_research/2007-105/advisory/nvdVendor Advisory
- secunia.com/secunia_research/2007-106/advisory/nvdVendor Advisory
- secunia.com/secunia_research/2007-107/advisory/nvdVendor Advisory
- www-1.ibm.com/support/docview.wssnvdVendor Advisory
- securitytracker.com/idnvd
- www.securityfocus.com/archive/1/490827/100/0/threadednvd
- www.securityfocus.com/archive/1/490829/100/0/threadednvd
- www.securityfocus.com/archive/1/490830/100/0/threadednvd
- www.securityfocus.com/archive/1/490831/100/0/threadednvd
- www.securityfocus.com/bid/28454nvd
- www.securitytracker.com/idnvd
- www.symantec.com/avcenter/security/Content/2008.04.08e.htmlnvd
- www.vupen.com/english/advisories/2008/1153nvd
- www.vupen.com/english/advisories/2008/1154nvd
- www.vupen.com/english/advisories/2008/1156nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/41716nvd
News mentions
0No linked articles in our index yet.