CVE-2007-1463
Mandriva Linux Security Advisory 2007.069
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
Format string vulnerability in Inkscape before 0.45.1 allows user-assisted remote attackers to execute arbitrary code via format string specifiers in a URI, which is not properly handled by certain dialogs.
Vulnerabilidad en el formato de cadena en el Inkscape anterior al 0.45.1 permite a atacantes con la intervención del usuario ejecutar código de su elección mediante especificadores del formato de cadena en una URI,lo que no es manejado correctamente mediante ciertos diálogos.
Kees Cook has discovered two vulnerabilities in Inkscape. The application does not properly handle format string specifiers in some dialog boxes. Inkscape is also vulnerable to another format string error in its Jabber whiteboard protocol. Versions less than 0.45.1 are affected.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2007-03-15 CVE Reserved
- 2007-03-21 CVE Published
- 2024-08-07 CVE Updated
- 2025-06-05 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
CAPEC
References (17)
URL | Tag | Source |
---|---|---|
http://secunia.com/advisories/24584 | Third Party Advisory | |
http://secunia.com/advisories/24597 | Third Party Advisory | |
http://secunia.com/advisories/24615 | Third Party Advisory | |
http://secunia.com/advisories/24661 | Third Party Advisory | |
http://secunia.com/advisories/24859 | Third Party Advisory | |
http://secunia.com/advisories/25072 | Third Party Advisory | |
http://www.securityfocus.com/archive/1/463710/100/0/threaded | Mailing List | |
http://www.securityfocus.com/bid/23070 | Vdb Entry | |
http://www.securityfocus.com/bid/23138 | Vdb Entry | |
http://www.vupen.com/english/advisories/2007/1059 | Vdb Entry | |
https://exchange.xforce.ibmcloud.com/vulnerabilities/33163 | Vdb Entry | |
https://issues.rpath.com/browse/RPL-1170 | X_refsource_confirm |
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://sourceforge.net/project/shownotes.php?group_id=93438&release_id=495106 | 2018-10-16 |
URL | Date | SRC |
---|---|---|
http://www.gentoo.org/security/en/glsa/glsa-200704-10.xml | 2018-10-16 | |
http://www.mandriva.com/security/advisories?name=MDKSA-2007:069 | 2018-10-16 | |
http://www.novell.com/linux/security/advisories/2007_8_sr.html | 2018-10-16 | |
http://www.ubuntu.com/usn/usn-438-1 | 2018-10-16 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Inkscape Search vendor "Inkscape" | Inkscape Search vendor "Inkscape" for product "Inkscape" | 0.40 Search vendor "Inkscape" for product "Inkscape" and version "0.40" | - |
Affected
| in | Ubuntu Search vendor "Ubuntu" | Ubuntu Linux Search vendor "Ubuntu" for product "Ubuntu Linux" | 5.10 Search vendor "Ubuntu" for product "Ubuntu Linux" and version "5.10" | - |
Safe
|
Inkscape Search vendor "Inkscape" | Inkscape Search vendor "Inkscape" for product "Inkscape" | 0.40 Search vendor "Inkscape" for product "Inkscape" and version "0.40" | - |
Affected
| in | Ubuntu Search vendor "Ubuntu" | Ubuntu Linux Search vendor "Ubuntu" for product "Ubuntu Linux" | 6.06 Search vendor "Ubuntu" for product "Ubuntu Linux" and version "6.06" | - |
Safe
|
Inkscape Search vendor "Inkscape" | Inkscape Search vendor "Inkscape" for product "Inkscape" | 0.40 Search vendor "Inkscape" for product "Inkscape" and version "0.40" | - |
Affected
| in | Ubuntu Search vendor "Ubuntu" | Ubuntu Linux Search vendor "Ubuntu" for product "Ubuntu Linux" | 6.06_lts Search vendor "Ubuntu" for product "Ubuntu Linux" and version "6.06_lts" | - |
Safe
|
Inkscape Search vendor "Inkscape" | Inkscape Search vendor "Inkscape" for product "Inkscape" | 0.40 Search vendor "Inkscape" for product "Inkscape" and version "0.40" | - |
Affected
| in | Ubuntu Search vendor "Ubuntu" | Ubuntu Linux Search vendor "Ubuntu" for product "Ubuntu Linux" | 6.10 Search vendor "Ubuntu" for product "Ubuntu Linux" and version "6.10" | i386 |
Safe
|
Inkscape Search vendor "Inkscape" | Inkscape Search vendor "Inkscape" for product "Inkscape" | 0.41 Search vendor "Inkscape" for product "Inkscape" and version "0.41" | - |
Affected
| in | Ubuntu Search vendor "Ubuntu" | Ubuntu Linux Search vendor "Ubuntu" for product "Ubuntu Linux" | 5.10 Search vendor "Ubuntu" for product "Ubuntu Linux" and version "5.10" | - |
Safe
|
Inkscape Search vendor "Inkscape" | Inkscape Search vendor "Inkscape" for product "Inkscape" | 0.41 Search vendor "Inkscape" for product "Inkscape" and version "0.41" | - |
Affected
| in | Ubuntu Search vendor "Ubuntu" | Ubuntu Linux Search vendor "Ubuntu" for product "Ubuntu Linux" | 6.06 Search vendor "Ubuntu" for product "Ubuntu Linux" and version "6.06" | - |
Safe
|
Inkscape Search vendor "Inkscape" | Inkscape Search vendor "Inkscape" for product "Inkscape" | 0.41 Search vendor "Inkscape" for product "Inkscape" and version "0.41" | - |
Affected
| in | Ubuntu Search vendor "Ubuntu" | Ubuntu Linux Search vendor "Ubuntu" for product "Ubuntu Linux" | 6.06_lts Search vendor "Ubuntu" for product "Ubuntu Linux" and version "6.06_lts" | - |
Safe
|
Inkscape Search vendor "Inkscape" | Inkscape Search vendor "Inkscape" for product "Inkscape" | 0.41 Search vendor "Inkscape" for product "Inkscape" and version "0.41" | - |
Affected
| in | Ubuntu Search vendor "Ubuntu" | Ubuntu Linux Search vendor "Ubuntu" for product "Ubuntu Linux" | 6.10 Search vendor "Ubuntu" for product "Ubuntu Linux" and version "6.10" | i386 |
Safe
|
Inkscape Search vendor "Inkscape" | Inkscape Search vendor "Inkscape" for product "Inkscape" | 0.42 Search vendor "Inkscape" for product "Inkscape" and version "0.42" | - |
Affected
| in | Ubuntu Search vendor "Ubuntu" | Ubuntu Linux Search vendor "Ubuntu" for product "Ubuntu Linux" | 5.10 Search vendor "Ubuntu" for product "Ubuntu Linux" and version "5.10" | - |
Safe
|
Inkscape Search vendor "Inkscape" | Inkscape Search vendor "Inkscape" for product "Inkscape" | 0.42 Search vendor "Inkscape" for product "Inkscape" and version "0.42" | - |
Affected
| in | Ubuntu Search vendor "Ubuntu" | Ubuntu Linux Search vendor "Ubuntu" for product "Ubuntu Linux" | 6.06 Search vendor "Ubuntu" for product "Ubuntu Linux" and version "6.06" | - |
Safe
|
Inkscape Search vendor "Inkscape" | Inkscape Search vendor "Inkscape" for product "Inkscape" | 0.42 Search vendor "Inkscape" for product "Inkscape" and version "0.42" | - |
Affected
| in | Ubuntu Search vendor "Ubuntu" | Ubuntu Linux Search vendor "Ubuntu" for product "Ubuntu Linux" | 6.06_lts Search vendor "Ubuntu" for product "Ubuntu Linux" and version "6.06_lts" | - |
Safe
|
Inkscape Search vendor "Inkscape" | Inkscape Search vendor "Inkscape" for product "Inkscape" | 0.42 Search vendor "Inkscape" for product "Inkscape" and version "0.42" | - |
Affected
| in | Ubuntu Search vendor "Ubuntu" | Ubuntu Linux Search vendor "Ubuntu" for product "Ubuntu Linux" | 6.10 Search vendor "Ubuntu" for product "Ubuntu Linux" and version "6.10" | i386 |
Safe
|
Inkscape Search vendor "Inkscape" | Inkscape Search vendor "Inkscape" for product "Inkscape" | 0.42.1 Search vendor "Inkscape" for product "Inkscape" and version "0.42.1" | - |
Affected
| in | Ubuntu Search vendor "Ubuntu" | Ubuntu Linux Search vendor "Ubuntu" for product "Ubuntu Linux" | 5.10 Search vendor "Ubuntu" for product "Ubuntu Linux" and version "5.10" | - |
Safe
|
Inkscape Search vendor "Inkscape" | Inkscape Search vendor "Inkscape" for product "Inkscape" | 0.42.1 Search vendor "Inkscape" for product "Inkscape" and version "0.42.1" | - |
Affected
| in | Ubuntu Search vendor "Ubuntu" | Ubuntu Linux Search vendor "Ubuntu" for product "Ubuntu Linux" | 6.06 Search vendor "Ubuntu" for product "Ubuntu Linux" and version "6.06" | - |
Safe
|
Inkscape Search vendor "Inkscape" | Inkscape Search vendor "Inkscape" for product "Inkscape" | 0.42.1 Search vendor "Inkscape" for product "Inkscape" and version "0.42.1" | - |
Affected
| in | Ubuntu Search vendor "Ubuntu" | Ubuntu Linux Search vendor "Ubuntu" for product "Ubuntu Linux" | 6.06_lts Search vendor "Ubuntu" for product "Ubuntu Linux" and version "6.06_lts" | - |
Safe
|
Inkscape Search vendor "Inkscape" | Inkscape Search vendor "Inkscape" for product "Inkscape" | 0.42.1 Search vendor "Inkscape" for product "Inkscape" and version "0.42.1" | - |
Affected
| in | Ubuntu Search vendor "Ubuntu" | Ubuntu Linux Search vendor "Ubuntu" for product "Ubuntu Linux" | 6.10 Search vendor "Ubuntu" for product "Ubuntu Linux" and version "6.10" | i386 |
Safe
|
Inkscape Search vendor "Inkscape" | Inkscape Search vendor "Inkscape" for product "Inkscape" | 0.42.2 Search vendor "Inkscape" for product "Inkscape" and version "0.42.2" | - |
Affected
| in | Ubuntu Search vendor "Ubuntu" | Ubuntu Linux Search vendor "Ubuntu" for product "Ubuntu Linux" | 5.10 Search vendor "Ubuntu" for product "Ubuntu Linux" and version "5.10" | - |
Safe
|
Inkscape Search vendor "Inkscape" | Inkscape Search vendor "Inkscape" for product "Inkscape" | 0.42.2 Search vendor "Inkscape" for product "Inkscape" and version "0.42.2" | - |
Affected
| in | Ubuntu Search vendor "Ubuntu" | Ubuntu Linux Search vendor "Ubuntu" for product "Ubuntu Linux" | 6.06 Search vendor "Ubuntu" for product "Ubuntu Linux" and version "6.06" | - |
Safe
|
Inkscape Search vendor "Inkscape" | Inkscape Search vendor "Inkscape" for product "Inkscape" | 0.42.2 Search vendor "Inkscape" for product "Inkscape" and version "0.42.2" | - |
Affected
| in | Ubuntu Search vendor "Ubuntu" | Ubuntu Linux Search vendor "Ubuntu" for product "Ubuntu Linux" | 6.06_lts Search vendor "Ubuntu" for product "Ubuntu Linux" and version "6.06_lts" | - |
Safe
|
Inkscape Search vendor "Inkscape" | Inkscape Search vendor "Inkscape" for product "Inkscape" | 0.42.2 Search vendor "Inkscape" for product "Inkscape" and version "0.42.2" | - |
Affected
| in | Ubuntu Search vendor "Ubuntu" | Ubuntu Linux Search vendor "Ubuntu" for product "Ubuntu Linux" | 6.10 Search vendor "Ubuntu" for product "Ubuntu Linux" and version "6.10" | i386 |
Safe
|
Inkscape Search vendor "Inkscape" | Inkscape Search vendor "Inkscape" for product "Inkscape" | 0.43 Search vendor "Inkscape" for product "Inkscape" and version "0.43" | - |
Affected
| in | Ubuntu Search vendor "Ubuntu" | Ubuntu Linux Search vendor "Ubuntu" for product "Ubuntu Linux" | 5.10 Search vendor "Ubuntu" for product "Ubuntu Linux" and version "5.10" | - |
Safe
|
Inkscape Search vendor "Inkscape" | Inkscape Search vendor "Inkscape" for product "Inkscape" | 0.43 Search vendor "Inkscape" for product "Inkscape" and version "0.43" | - |
Affected
| in | Ubuntu Search vendor "Ubuntu" | Ubuntu Linux Search vendor "Ubuntu" for product "Ubuntu Linux" | 6.06 Search vendor "Ubuntu" for product "Ubuntu Linux" and version "6.06" | - |
Safe
|
Inkscape Search vendor "Inkscape" | Inkscape Search vendor "Inkscape" for product "Inkscape" | 0.43 Search vendor "Inkscape" for product "Inkscape" and version "0.43" | - |
Affected
| in | Ubuntu Search vendor "Ubuntu" | Ubuntu Linux Search vendor "Ubuntu" for product "Ubuntu Linux" | 6.06_lts Search vendor "Ubuntu" for product "Ubuntu Linux" and version "6.06_lts" | - |
Safe
|
Inkscape Search vendor "Inkscape" | Inkscape Search vendor "Inkscape" for product "Inkscape" | 0.43 Search vendor "Inkscape" for product "Inkscape" and version "0.43" | - |
Affected
| in | Ubuntu Search vendor "Ubuntu" | Ubuntu Linux Search vendor "Ubuntu" for product "Ubuntu Linux" | 6.10 Search vendor "Ubuntu" for product "Ubuntu Linux" and version "6.10" | i386 |
Safe
|
Inkscape Search vendor "Inkscape" | Inkscape Search vendor "Inkscape" for product "Inkscape" | 0.44 Search vendor "Inkscape" for product "Inkscape" and version "0.44" | - |
Affected
| in | Ubuntu Search vendor "Ubuntu" | Ubuntu Linux Search vendor "Ubuntu" for product "Ubuntu Linux" | 5.10 Search vendor "Ubuntu" for product "Ubuntu Linux" and version "5.10" | - |
Safe
|
Inkscape Search vendor "Inkscape" | Inkscape Search vendor "Inkscape" for product "Inkscape" | 0.44 Search vendor "Inkscape" for product "Inkscape" and version "0.44" | - |
Affected
| in | Ubuntu Search vendor "Ubuntu" | Ubuntu Linux Search vendor "Ubuntu" for product "Ubuntu Linux" | 6.06 Search vendor "Ubuntu" for product "Ubuntu Linux" and version "6.06" | - |
Safe
|
Inkscape Search vendor "Inkscape" | Inkscape Search vendor "Inkscape" for product "Inkscape" | 0.44 Search vendor "Inkscape" for product "Inkscape" and version "0.44" | - |
Affected
| in | Ubuntu Search vendor "Ubuntu" | Ubuntu Linux Search vendor "Ubuntu" for product "Ubuntu Linux" | 6.06_lts Search vendor "Ubuntu" for product "Ubuntu Linux" and version "6.06_lts" | - |
Safe
|
Inkscape Search vendor "Inkscape" | Inkscape Search vendor "Inkscape" for product "Inkscape" | 0.44 Search vendor "Inkscape" for product "Inkscape" and version "0.44" | - |
Affected
| in | Ubuntu Search vendor "Ubuntu" | Ubuntu Linux Search vendor "Ubuntu" for product "Ubuntu Linux" | 6.10 Search vendor "Ubuntu" for product "Ubuntu Linux" and version "6.10" | i386 |
Safe
|