Vulnerability Description
Heap-based buffer overflow in a certain ActiveX control in LEADTOOLS LEAD Raster ISIS Object (LTRIS14e.DLL) 14.5.0.44 allows remote attackers to cause a denial of service (Internet Explorer crash) or execute arbitrary code via a long DriverName property, a different ActiveX control than CVE-2007-2827.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Lead Technologies | Leadtools Raster Image Sdk | 14.5 |
| Lead Technologies | Leadtools Raster Isis Object | 14.5.0.44 |
Related Weaknesses (CWE)
References
- http://moaxb.blogspot.com/2007/05/moaxb-27-leadtools-raster-isis-object.html
- http://osvdb.org/36043
- http://secunia.com/advisories/25433Vendor Advisory
- http://www.securityfocus.com/bid/24193Exploit
- http://www.shinnai.altervista.org/moaxb/20070527/leadrasterisistxt.html
- http://www.vupen.com/english/advisories/2007/1972Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/34528
- http://moaxb.blogspot.com/2007/05/moaxb-27-leadtools-raster-isis-object.html
- http://osvdb.org/36043
- http://secunia.com/advisories/25433Vendor Advisory
- http://www.securityfocus.com/bid/24193Exploit
- http://www.shinnai.altervista.org/moaxb/20070527/leadrasterisistxt.html
- http://www.vupen.com/english/advisories/2007/1972Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/34528
FAQ
What is CVE-2007-2980?
CVE-2007-2980 is a vulnerability with a CVSS score of 6.8 (MEDIUM). Heap-based buffer overflow in a certain ActiveX control in LEADTOOLS LEAD Raster ISIS Object (LTRIS14e.DLL) 14.5.0.44 allows remote attackers to cause a denial of service (Internet Explorer crash) or ...
How severe is CVE-2007-2980?
CVE-2007-2980 has been rated MEDIUM with a CVSS base score of 6.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2007-2980?
Check the references section above for vendor advisories and patch information. Affected products include: Lead Technologies Leadtools Raster Image Sdk, Lead Technologies Leadtools Raster Isis Object.