cvs.sourceforge.netConfirmation
http://cvs.sourceforge.net/viewcvs.py/latex2rtf/latex2rtf/definitions.c?rev=1.22&view=log CVE-2004-2167
LaTeX2rtf 1.9.15 - Remote Buffer Overflow
Record summary
CVE-2004-2167 has a selected CVSS score of 7.5; EIP currently links 1 catalogued exploit and 1 repository PoC.
Description
Multiple buffer overflows in LaTeX2rtf 1.9.15, and possibly other versions, allow remote attackers to execute arbitrary code via (1) the expandmacro function, and possibly (2) Environments and (3) TranslateCommand.
Description source: CVE List
Exploitation context
Proofs of concept
2Catalogued exploits
ExploitDBLaTeX2rtf 1.9.15 - Remote Buffer OverflowExploitDB exploitby D. J. BernsteinNot analyzed1 file
Repository PoCs
GitHubuzzzval/cve-2004-2167Repository PoCby uzzzvalStars: 0Not analyzed3 files
References
710216vdb entry
http://www.osvdb.org/displayvuln.php?osvdb_id=10216 11233vdb entry
http://www.securityfocus.com/bid/11233 1011367vdb entry
http://www.securitytracker.com/alerts/2004/Sep/1011367.html latex2rtf-expandmacro-bo(17460)vdb entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/17460 latex2rtf-multiple-bo(17487)vdb entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/17487 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2004-2167