CVE-2007-2666
Stack-based buffer overflow in LexRuby.cxx (SciLexer.dll) in Scintilla 1.73, as used by notepad++ 4.1.1 and earlier, allows user-assisted remote attackers to execute arbitrary code via certain Ruby (.rb) files with long lines. NOTE: this was originally reported as a vulnerability in notepad++.
- Notepad\+\+
- ≤ 4.1.1
- Scintilla
- = 1.73
- Fix
- Available
- CVSS 2.0
- 7.6 HIGH
- EPSS
- 15.2% (97th percentile)
- Weakness
- CWE-119
- NVD status
- Modified
- Published
- 2007-05-14
CVE-2007-2666 at NVD
1 known exploit for CVE-2007-2666
Proof-of-concept code and exploit modules indexed by Sploitus