关于 CVE-2010-0134 的漏洞信息

1. 漏洞描述
From NVD
Integer signedness error in rtfsr.dll in Autonomy KeyView 10.4 and 10.9, as used in multiple IBM, Symantec, and other products, allows remote attackers to execute arbitrary code via a crafted \ls keyword in a list override table entry in an RTF file, which triggers a buffer overflow.
From 神龙GPT (AIGC)
在Autonomy KeyView 10.4和10.9中,rtfsr.dll中的整型 signedness 错误,被用于多个IBM、Symptoms 和 other products,允许远程攻击者通过在 RTF 文件中的列表 override table 条目中的 crafted \ls 关键字执行任意代码,触发缓冲区溢出。
2. 漏洞评分(CVSS)
From NVD
NVD 暂无评分
From 神龙GPT (AIGC)
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
3. 漏洞类别
From NVD
NVD 暂无漏洞类别信息
From 神龙GPT (AIGC)
神龙GPT 暂无漏洞类别信息(请耐心等待)
Reference