Vulnerability Name:

CVE-2007-1463 (CCN-33163)

Assigned:2007-03-20
Published:2007-03-20
Updated:2018-10-16
Summary:Format string vulnerability in Inkscape before 0.45.1 allows user-assisted remote attackers to execute arbitrary code via format string specifiers in a URI, which is not properly handled by certain dialogs.
CVSS v3 Severity:9.0 Critical (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): High
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Changed
Impact Metrics:Confidentiality (C): High
Integrity (I): High
Availibility (A): High
CVSS v2 Severity:6.8 Medium (CVSS v2 Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P)
5.0 Medium (Temporal CVSS v2 Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P/E:U/RL:OF/RC:C)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Medium
Authentication (Au): None
Impact Metrics:Confidentiality (C): Partial
Integrity (I): Partial
Availibility (A): Partial
7.6 High (CCN CVSS v2 Vector: AV:N/AC:H/Au:N/C:C/I:C/A:C)
5.6 Medium (CCN Temporal CVSS v2 Vector: AV:N/AC:H/Au:N/C:C/I:C/A:C/E:U/RL:OF/RC:C)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): High
Athentication (Au): None
Impact Metrics:Confidentiality (C): Complete
Integrity (I): Complete
Availibility (A): Complete
Vulnerability Type:CWE-Other
Vulnerability Consequences:Gain Access
References:Source: MITRE
Type: CNA
CVE-2007-1463

Source: SECUNIA
Type: UNKNOWN
24584

Source: SECUNIA
Type: UNKNOWN
24597

Source: CCN
Type: SA24615
Inkscape Format String Vulnerabilities

Source: SECUNIA
Type: UNKNOWN
24615

Source: SECUNIA
Type: UNKNOWN
24661

Source: SECUNIA
Type: UNKNOWN
24859

Source: SECUNIA
Type: UNKNOWN
25072

Source: CONFIRM
Type: Patch
http://sourceforge.net/project/shownotes.php?group_id=93438&release_id=495106

Source: CCN
Type: SourceForge.net: Files
Inkscape - File Release Notes and Changelog - Release Name: 0.45.1

Source: CCN
Type: GLSA-200704-10
Inkscape: Two format string vulnerabilities

Source: GENTOO
Type: UNKNOWN
GLSA-200704-10

Source: MANDRIVA
Type: UNKNOWN
MDKSA-2007:069

Source: SUSE
Type: UNKNOWN
SUSE-SR:2007:008

Source: CCN
Type: OSVDB ID: 34370
Inkscape URI Handling Format String

Source: BUGTRAQ
Type: UNKNOWN
20070324 FLEA-2007-0002-1: inkscape

Source: BID
Type: UNKNOWN
23070

Source: CCN
Type: BID-23070
Inkscape Malicious URI Format String Vulnerability

Source: BID
Type: UNKNOWN
23138

Source: CCN
Type: BID-23138
Inkscape Client Malicious Jabber Server Format String Vulnerability

Source: CCN
Type: USN-438-1
Inkscape vulnerability

Source: UBUNTU
Type: Vendor Advisory
USN-438-1

Source: VUPEN
Type: UNKNOWN
ADV-2007-1059

Source: XF
Type: UNKNOWN
inkscape-dialogs-format-string(33163)

Source: XF
Type: UNKNOWN
inkscape-dialogs-format-string(33163)

Source: CONFIRM
Type: UNKNOWN
https://issues.rpath.com/browse/RPL-1170

Vulnerable Configuration:Configuration 1:
  • cpe:/o:ubuntu:ubuntu_linux:5.10:*:*:*:*:*:*:*
  • OR cpe:/o:ubuntu:ubuntu_linux:6.06:*:*:*:*:*:*:*
  • OR cpe:/o:ubuntu:ubuntu_linux:6.06_lts:*:*:*:*:*:*:*
  • OR cpe:/o:ubuntu:ubuntu_linux:6.10:*:i386:*:*:*:*:*
  • AND
  • cpe:/a:inkscape:inkscape:0.40:*:*:*:*:*:*:*
  • OR cpe:/a:inkscape:inkscape:0.41:*:*:*:*:*:*:*
  • OR cpe:/a:inkscape:inkscape:0.42:*:*:*:*:*:*:*
  • OR cpe:/a:inkscape:inkscape:0.42.1:*:*:*:*:*:*:*
  • OR cpe:/a:inkscape:inkscape:0.42.2:*:*:*:*:*:*:*
  • OR cpe:/a:inkscape:inkscape:0.43:*:*:*:*:*:*:*
  • OR cpe:/a:inkscape:inkscape:0.44:*:*:*:*:*:*:*

  • * Denotes that component is vulnerable
    Oval Definitions
    Definition IDClassTitleLast Modified
    oval:org.opensuse.security:def:20071463
    V
    CVE-2007-1463
    2015-11-16
    BACK
    ubuntu ubuntu linux 5.10
    ubuntu ubuntu linux 6.06
    ubuntu ubuntu linux 6.06_lts
    ubuntu ubuntu linux 6.10
    inkscape inkscape 0.40
    inkscape inkscape 0.41
    inkscape inkscape 0.42
    inkscape inkscape 0.42.1
    inkscape inkscape 0.42.2
    inkscape inkscape 0.43
    inkscape inkscape 0.44