CVE-2007-2666

Severity CVSS v4.0:
Pending analysis
Type:
CWE-119 Buffer Errors
Publication date:
14/05/2007
Last modified:
09/04/2025

Description

Stack-based buffer overflow in LexRuby.cxx (SciLexer.dll) in Scintilla 1.73, as used by notepad++ 4.1.1 and earlier, allows user-assisted remote attackers to execute arbitrary code via certain Ruby (.rb) files with long lines. NOTE: this was originally reported as a vulnerability in notepad++.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:notepad\+\+:notepad\+\+:*:*:*:*:*:*:*:* 4.1.1 (including)
cpe:2.3:a:scintilla:scintilla:1.73:*:*:*:*:*:*:*