← Vulnerability feed

Vulnerability record · CVE-2007-6020 · published 10 April 2008

CVE-2007-6020: Activepdf docconverter memory buffer overflow vulnerability

Activepdf · Docconverter

Multiple stack-based buffer overflows in foliosr.dll in the Folio Flat File speed reader in Autonomy (formerly Verity) KeyView 10.3.0.0, as used by IBM Lotus Notes, Symantec Mail Security, and activePDF DocConverter, allow remote attackers to execute arbitrary code via a long attribute value in a (1) DI, (2) FD, (3) FT, (4) JD, (5) JL, (6) LE, (7) OB, (8) OD, (9) OL, (10) PN, (11) PS, (12) PW, (13) RD, (14) QL, or (15) TS tag in a .fff file.

9.3 CVSS 2.0 High EPSS 5.7% · top 7.2% CWE-119 · Memory buffer overflow
9.3CVSS 2.0 base score
5.7%EPSS exploitation probability, 30 days
NoNot in CISA KEV
5Affected product versions listed by NVD
44References
16 Jun 2026Last modified by NVD

Description

Multiple stack-based buffer overflows in foliosr.dll in the Folio Flat File speed reader in Autonomy (formerly Verity) KeyView 10.3.0.0, as used by IBM Lotus Notes, Symantec Mail Security, and activePDF DocConverter, allow remote attackers to execute arbitrary code via a long attribute value in a (1) DI, (2) FD, (3) FT, (4) JD, (5) JL, (6) LE, (7) OB, (8) OD, (9) OL, (10) PN, (11) PS, (12) PW, (13) RD, (14) QL, or (15) TS tag in a .fff file.

AV:N/AC:M/Au:N/C:C/I:C/A:C

Affected products

5 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

LinkTags
http://secunia.com/advisories/27763 Vendor Advisory
http://secunia.com/advisories/28140 Vendor Advisory
http://secunia.com/advisories/28209 Vendor Advisory
http://secunia.com/advisories/28210 Vendor Advisory
http://secunia.com/advisories/29342 Vendor Advisory
http://secunia.com/secunia_research/2007-104/advisory/ Vendor Advisory
http://secunia.com/secunia_research/2007-105/advisory/ Vendor Advisory
http://secunia.com/secunia_research/2007-106/advisory/ Vendor Advisory
http://secunia.com/secunia_research/2007-107/advisory/ Vendor Advisory
http://securitytracker.com/id?1019805
http://www-1.ibm.com/support/docview.wss?rs=463&uid=swg21298453 Vendor Advisory
http://www.securityfocus.com/archive/1/490827/100/0/threaded
http://www.securityfocus.com/archive/1/490829/100/0/threaded
http://www.securityfocus.com/archive/1/490830/100/0/threaded
http://www.securityfocus.com/archive/1/490831/100/0/threaded
http://www.securityfocus.com/bid/28454
http://www.securitytracker.com/id?1019841
http://www.symantec.com/avcenter/security/Content/2008.04.08e.html
http://www.vupen.com/english/advisories/2008/1153
http://www.vupen.com/english/advisories/2008/1154
http://www.vupen.com/english/advisories/2008/1156
https://exchange.xforce.ibmcloud.com/vulnerabilities/41716
http://secunia.com/advisories/27763 Vendor Advisory
http://secunia.com/advisories/28140 Vendor Advisory
http://secunia.com/advisories/28209 Vendor Advisory
http://secunia.com/advisories/28210 Vendor Advisory
http://secunia.com/advisories/29342 Vendor Advisory
http://secunia.com/secunia_research/2007-104/advisory/ Vendor Advisory
http://secunia.com/secunia_research/2007-105/advisory/ Vendor Advisory
http://secunia.com/secunia_research/2007-106/advisory/ Vendor Advisory
http://secunia.com/secunia_research/2007-107/advisory/ Vendor Advisory
http://securitytracker.com/id?1019805
http://www-1.ibm.com/support/docview.wss?rs=463&uid=swg21298453 Vendor Advisory
http://www.securityfocus.com/archive/1/490827/100/0/threaded
http://www.securityfocus.com/archive/1/490829/100/0/threaded
http://www.securityfocus.com/archive/1/490830/100/0/threaded
http://www.securityfocus.com/archive/1/490831/100/0/threaded
http://www.securityfocus.com/bid/28454
http://www.securitytracker.com/id?1019841
http://www.symantec.com/avcenter/security/Content/2008.04.08e.html

Track CVE-2007-6020 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

10.0CVE-2010-1608Ibm lotus notes memory buffer overflow vulnerabilityStack-based buffer overflow in IBM Lotus Notes 8.5 and 8.5fp1, and possibly other versions, allows remote attackers to execute arbitrary code via unk…EPSS 5.8%10.0CVE-2009-3032Ibm lotus notes vulnerabilityInteger overflow in kvolefio.dll 8.5.0.8339 and 10.5.0.0 in the Autonomy KeyView Filter SDK, as used in IBM Lotus Notes 8.5, Symantec Mail Security f…EPSS 3.7%10.0CVE-2006-0119Ibm lotus domino vulnerabilityMultiple unspecified vulnerabilities in IBM Lotus Notes and Domino Server before 6.5.5 have unknown impact and attack vectors, due to "potential secu…EPSS 3.8%10.0CVE-2004-2281Ibm lotus notes vulnerabilityMultiple unknown vulnerabilities in IBM Lotus Notes 6.5.x before 6.5.4 and 6.0.x before 6.0.5 have unknown impact and attack vectors, related to Java…EPSS 2.2%10.0CVE-2004-0480Ibm lotus notes argument injection vulnerabilityArgument injection vulnerability in IBM Lotus Notes 6.0.3 and 6.5 allows remote attackers to execute arbitrary code via a notes: URI that uses a UNC …EPSS 8.6%9.3CVE-2012-6349Autonomy keyview idol memory buffer overflow vulnerabilityBuffer overflow in the .mdb parser in Autonomy KeyView IDOL, as used in IBM Notes 8.5.x before 8.5.3 FP4, allows remote attackers to execute arbitrar…EPSS 3.2%9.3CVE-2012-4821Ibm java vulnerabilityMultiple unspecified vulnerabilities in the JRE component in IBM Java 7 SR2 and earlier, Java 6.0.1 SR3 and earlier, Java 6 SR11 and earlier, Java 5 …EPSS 6.9%9.3CVE-2012-4822Ibm java vulnerabilityMultiple unspecified vulnerabilities in the JRE component in IBM Java 7 SR2 and earlier, Java 6.0.1 SR3 and earlier, Java 6 SR11 and earlier, Java 5 …EPSS 6.9%

Source: NIST National Vulnerability Database (record CVE-2007-6020), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.