CVE-2009-3930

Severity CVSS v4.0:
Pending analysis
Type:
CWE-189 Numeric Errors
Publication date:
10/11/2009
Last modified:
09/04/2025

Description

Multiple integer overflows in Christos Zoulas file before 5.02 allow user-assisted remote attackers to have an unspecified impact via a malformed compound document (aka cdf) file that triggers a buffer overflow.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:christos_zoulas:file:*:*:*:*:*:*:*:* 5.01 (including)
cpe:2.3:a:christos_zoulas:file:3.30:*:*:*:*:*:*:*
cpe:2.3:a:christos_zoulas:file:3.31:*:*:*:*:*:*:*
cpe:2.3:a:christos_zoulas:file:3.32:*:*:*:*:*:*:*
cpe:2.3:a:christos_zoulas:file:3.33:*:*:*:*:*:*:*
cpe:2.3:a:christos_zoulas:file:3.34:*:*:*:*:*:*:*
cpe:2.3:a:christos_zoulas:file:3.36:*:*:*:*:*:*:*
cpe:2.3:a:christos_zoulas:file:3.37:*:*:*:*:*:*:*
cpe:2.3:a:christos_zoulas:file:3.38:*:*:*:*:*:*:*
cpe:2.3:a:christos_zoulas:file:3.39:*:*:*:*:*:*:*
cpe:2.3:a:christos_zoulas:file:3.40:*:*:*:*:*:*:*
cpe:2.3:a:christos_zoulas:file:3.41:*:*:*:*:*:*:*
cpe:2.3:a:christos_zoulas:file:4.01:*:*:*:*:*:*:*
cpe:2.3:a:christos_zoulas:file:4.02:*:*:*:*:*:*:*
cpe:2.3:a:christos_zoulas:file:4.03:*:*:*:*:*:*:*