Intrusion Prevention

HP.Autonomy.KeyView.Library.File.Parsing.Buffer.Overflow

Description

This indicates an attack attempt to exploit a Buffer Overflow vulnerability in Hewlett-Packard Autonomy KeyView library.
The vulnerability is due to an error when the vulnerable software handles a maliciously crafted file. A remote attacker may be able to exploit this to execute arbitrary code within the context of the application, via a crafted file.

Affected Products

Autonomy KeyView library 10.15 and earlier versions

Impact

System Compromise: Remote attackers can gain control of vulnerable systems.

Recommended Actions

The issue has been resolved in 10.16.
Please see consult with your vendor for relevant updates for updates for this version of Keyview.
For IBM products, refer to the vendor's advisory for updates:
http://www-01.ibm.com/support/docview.wss?uid=swg21627597
http://www-01.ibm.com/support/docview.wss?uid=swg21627992

CVE References

CVE-2012-6277