CVE ID | CVE-2015-5420 |
CVSS SCORE | 7.5, AV:N/AC:L/Au:N/C:P/I:P/A:P |
AFFECTED VENDORS |
Hewlett-Packard |
AFFECTED PRODUCTS |
KeyView IDOL |
VULNERABILITY DETAILS |
The flaw exists within the handling of ODF files. It is possible to trigger an out-of-bounds write when handling a malformed XML structure within an ODF. A remote attacker could exploit this vulnerability to execute arbitrary code under the context of the process. |
ADDITIONAL DETAILS |
Hewlett-Packard has issued an update to correct this vulnerability. More details can be found at:
https://h20564.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay/?docId=emr_na-c04771027 |
DISCLOSURE TIMELINE |
|
CREDIT | ASD - Vulnerability Research |