VDB
CVE-2006-6120
CVE-2006-6120
PUBLISHED
CVSS 6.800000190734863 MEDIUM
Integer overflow in the KPresenter import filter for Microsoft PowerPoint files (filters/olefilters/lib/klaola.cc) in KOffice before 1.6.1 allows user-assisted remote attackers to execute arbitrary code via a crafted PPT file, which results in a heap-based buffer overflow.
EPSS 6.09% · 90.9th percentile
Risk Scores
CVSS 2.0
6.800000190734863
EPSS Score
6.09%
90.9th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| n/a | n/a | n/a |
| kde | koffice | 1.6.1 |
Timeline
- Dec 3, 2006 CVE Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- Jul 12, 2022 EPSS Score
- Sep 4, 2022 EPSS Score
- Oct 26, 2022 EPSS Score
- Feb 9, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- Apr 3, 2023 EPSS Score
- May 25, 2023 EPSS Score
- Jul 17, 2023 EPSS Score
- Aug 30, 2023 EPSS Score
References
- ADV-2006-4771 vdb
- 23220 third-party-advisory
- 23143 third-party-advisory
- 21354 vdb
- http://websvn.kde.org/branches/koffice/1.6/koffice/filters/olefilters/lib/klaola.cc?rev=607037&r1=566347&r2=607037 url
- 1017318 vdb
- 23409 third-party-advisory
- 24218 third-party-advisory
- USN-388-1 vendor-advisory
- MDKSA-2006:222 vendor-advisory
- GLSA-200612-05 vendor-advisory
- RHSA-2007:0010 vendor-advisory
- 20061205 [KOffice security advisory] KOffice OLEfilter integer overflow mailing-list
- http://www.koffice.org/announcements/changelog-1.6.1.php url
- SUSE-SR:2006:029 vendor-advisory
- koffice-readbigblockdepot-overflow(30624) vdb
- 23162 third-party-advisory
- http://www.kde.org/info/security/advisory-20061204-1.txt url
- https://nvd.nist.gov/vuln/detail/CVE-2006-6120 advisory