Unrated severityNVD Advisory· Published Apr 10, 2008· Updated Apr 23, 2026
CVE-2008-1101
CVE-2008-1101
Description
Buffer overflow in kvdocve.dll in the KeyView document viewing engine in Autonomy (formerly Verity) KeyView, as used by IBM Lotus Notes 7.0.2 and 7.0.3, allows remote attackers to execute arbitrary code via a long pathname, as demonstrated by a long SRC attribute of an IMG element in an HTML document.
Affected products
7cpe:2.3:a:autonomy:keyview:10.3.0.0:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:autonomy:keyview:10.3.0.0:*:*:*:*:*:*:*
- cpe:2.3:a:autonomy:keyview:2.0.0.2:*:*:*:*:*:*:*
cpe:2.3:a:ibm:lotus_notes:6.0:*:*:*:*:*:*:*+ 4 more
- cpe:2.3:a:ibm:lotus_notes:6.0:*:*:*:*:*:*:*
- cpe:2.3:a:ibm:lotus_notes:6.5:*:*:*:*:*:*:*
- cpe:2.3:a:ibm:lotus_notes:7.0:*:*:*:*:*:*:*
- cpe:2.3:a:ibm:lotus_notes:7.0.2:*:*:*:*:*:*:*
- cpe:2.3:a:ibm:lotus_notes:7.0.3:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
10- secunia.com/advisories/28140nvdVendor Advisory
- secunia.com/advisories/28209nvdVendor Advisory
- secunia.com/advisories/28210nvdVendor Advisory
- secunia.com/secunia_research/2008-12/advisory/nvdVendor Advisory
- www-1.ibm.com/support/docview.wssnvd
- www.securityfocus.com/archive/1/490826/100/0/threadednvd
- www.securityfocus.com/bid/28454nvd
- www.vupen.com/english/advisories/2008/1153nvd
- www.vupen.com/english/advisories/2008/1156nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/41725nvd
News mentions
0No linked articles in our index yet.