peter bassill · operator
$ cve CVE-2004-2167 JSON

CVE-2004-2167 EXPLOIT

7.5
HIGH · CVSS 2.0 · EPSS 14.3% (pctl 97)

Patch early

A public exploit exists.

Description

Multiple buffer overflows in LaTeX2rtf 1.9.15, and possibly other versions, allow remote attackers to execute arbitrary code via (1) the expandmacro function, and possibly (2) Environments and (3) TranslateCommand.

Scoring

CVSS7.5 (HIGH, v2.0)
VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
EPSS14.31% — more likely to be exploited than 97% of all CVEs
On CISA KEVno
Public exploityes
Published2004-12-31
Last modified2026-06-16

Affected (1)

VendorProduct
latex2rtflatex2rtf

Public exploits

SourceTitleDate
exploit-dbLaTeX2rtf 1.9.15 - Remote Buffer Overflow2004-09-21

References

→ the Explorer  ·  watch your stack  ·  NVD