CVE-2009-3032
Integer overflow in kvolefio.dll 8.5.0.8339 and 10.5.0.0 in the Autonomy KeyView Filter SDK, as used in IBM Lotus Notes 8.5, Symantec Mail Security for Microsoft Exchange 5.0.10 through 5.0.13, and other products, allows context-dependent attackers to execute arbitrary code via a crafted OLE document that triggers a heap-based buffer overflow.
- Affected products
- Autonomy Keyview Filter Sdk, Ibm Lotus Notes, Exchange Server, Symantec Mail Security For Microsoft Exchange
- Ibm Lotus Notes
- = 8.5
- Symantec Brightmail Gateway
- = 8.0
- Symantec Data Loss Prevention Detection Servers
- = 8.1.1, 9.0.1, 10.0
- Symantec Data Loss Prevention Endpoint Agents
- = 8.1.1, 9.0.1, 10.0
- Symantec Im Manager 2007
- All versions
- Symantec Mail Security
- = 5.0.0, 5.0.1.181, 5.0.1.182, 5.0.1.189, 5.0.11, 5.0.12, 5.0.13, 6.0.6, 6.0.7, 6.0.8, 7.5.3.25, 7.5.4.29, 7.5.5.32, 7.5.6, 7.5.7, 7.5.8, 8.0, 8.0.1, 8.0.2
- Fix
- Available
- CVSS 2.0
- 10.0 HIGH
- EPSS
- 3.7% (89th percentile)
- Weakness
- CWE-189
- NVD status
- Modified
- Published
- 2010-03-05
CVE-2009-3032 at NVD
No indexed exploits for CVE-2009-3032 yet
Our index is partial: it proves presence, never absence
No exploit for CVE-2009-3032 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.