RTF2LATEX2E 1.0 - Remote Stack Buffer Overflow
Author: Limin Wang
type: remote
platform: linux
port:
date_added: 2004-12-16
date_updated: 2013-04-30
verified: 1
codes: CVE-2004-1293;OSVDB-12460
tags:
aliases:
screenshot_url:
application_url:
source: https://www.securityfocus.com/bid/11994/info
It is reported that rtf2latex2e is susceptible to a stack buffer overflow vulnerability. This issue is due to a failure of the application to properly bounds check user-supplied image data prior to copying it into a fixed-size memory buffer.
This vulnerability allows remote attackers to alter the proper flow of execution of the application, potentially resulting in the execution of attacker-supplied machine code in the context of the application attempting to read the malicious RTF file.
https://gitlab.com/exploit-database/exploitdb-bin-sploits/-/raw/main/bin-sploits/25006.zip