Lucene search

K
cveMitreCVE-2011-0548
HistoryJul 18, 2011 - 10:55 p.m.

CVE-2011-0548

2011-07-1822:55:00
CWE-119
mitre
web.nvd.nist.gov
42
cve-2011-0548
buffer overflow
lotus freelance graphics
autonomy keyview
symantec mail security
symantec brightmail
messaging gateway
symantec data loss prevention
dlp

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

8.1

Confidence

High

EPSS

0.529

Percentile

97.7%

Buffer overflow in the Lotus Freelance Graphics PRZ file viewer in Autonomy KeyView, as used in Symantec Mail Security (SMS) 6.x through 8.x, Symantec Brightmail and Messaging Gateway before 9.5.1, and Symantec Data Loss Prevention (DLP) before 10.5.3 and 11.x before 11.1, allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted .prz file. NOTE: this may overlap CVE-2011-1217.

Affected configurations

Nvd
Node
symantecmail_securityMatch6.0.0
OR
symantecmail_securityMatch7.5
OR
symantecmail_securityMatch8.0
Node
symantecbrightmail_and_messaging_gatewayRange9.5
OR
symantecbrightmail_and_messaging_gatewayMatch4.0.0
OR
symantecbrightmail_and_messaging_gatewayMatch4.1.0
OR
symantecbrightmail_and_messaging_gatewayMatch5.0
OR
symantecbrightmail_and_messaging_gatewayMatch7.7
OR
symantecbrightmail_and_messaging_gatewayMatch8.0
OR
symantecbrightmail_and_messaging_gatewayMatch9.0
OR
symantecbrightmail_and_messaging_gatewayMatch9.0.1
OR
symantecbrightmail_and_messaging_gatewayMatch9.0.2
Node
symantecdata_loss_preventionRange10.5.2
OR
symantecdata_loss_preventionMatch7.0
OR
symantecdata_loss_preventionMatch7.1
OR
symantecdata_loss_preventionMatch7.2
OR
symantecdata_loss_preventionMatch8.0
OR
symantecdata_loss_preventionMatch8.1
OR
symantecdata_loss_preventionMatch8.1.1
OR
symantecdata_loss_preventionMatch9.0
OR
symantecdata_loss_preventionMatch10
OR
symantecdata_loss_preventionMatch10.5
OR
symantecdata_loss_preventionMatch10.5.1
OR
symantecdata_loss_preventionMatch11.0
VendorProductVersionCPE
symantecmail_security6.0.0cpe:2.3:a:symantec:mail_security:6.0.0:*:*:*:*:*:*:*
symantecmail_security7.5cpe:2.3:a:symantec:mail_security:7.5:*:*:*:*:*:*:*
symantecmail_security8.0cpe:2.3:a:symantec:mail_security:8.0:*:*:*:*:*:*:*
symantecbrightmail_and_messaging_gateway*cpe:2.3:a:symantec:brightmail_and_messaging_gateway:*:*:*:*:*:*:*:*
symantecbrightmail_and_messaging_gateway4.0.0cpe:2.3:a:symantec:brightmail_and_messaging_gateway:4.0.0:*:*:*:*:*:*:*
symantecbrightmail_and_messaging_gateway4.1.0cpe:2.3:a:symantec:brightmail_and_messaging_gateway:4.1.0:*:*:*:*:*:*:*
symantecbrightmail_and_messaging_gateway5.0cpe:2.3:a:symantec:brightmail_and_messaging_gateway:5.0:*:*:*:*:*:*:*
symantecbrightmail_and_messaging_gateway7.7cpe:2.3:a:symantec:brightmail_and_messaging_gateway:7.7:*:*:*:*:*:*:*
symantecbrightmail_and_messaging_gateway8.0cpe:2.3:a:symantec:brightmail_and_messaging_gateway:8.0:*:*:*:*:*:*:*
symantecbrightmail_and_messaging_gateway9.0cpe:2.3:a:symantec:brightmail_and_messaging_gateway:9.0:*:*:*:*:*:*:*
Rows per page:
1-10 of 241

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

8.1

Confidence

High

EPSS

0.529

Percentile

97.7%