{"id":"DEBIAN-CVE-2006-4514","details":"Heap-based buffer overflow in the ole_info_read_metabat function in Gnome Structured File library (libgsf) 1.14.0, and other versions before 1.14.2, allows context-dependent attackers to execute arbitrary code via a large num_metabat value in an OLE document, which causes the ole_init_info function to allocate insufficient memory.","modified":"2026-09-12T06:47:31.714997824Z","published":"2006-11-30T23:28:00Z","upstream":["CVE-2006-4514"],"references":[{"type":"ADVISORY","url":"https://security-tracker.debian.org/tracker/CVE-2006-4514"}],"affected":[{"package":{"name":"libgsf","ecosystem":"Debian:12","purl":"pkg:deb/debian/libgsf?arch=source&distro=bookworm"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1.14.2-1"}]}],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2006-4514.json"}},{"package":{"name":"libgsf","ecosystem":"Debian:13","purl":"pkg:deb/debian/libgsf?arch=source&distro=trixie"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1.14.2-1"}]}],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2006-4514.json"}},{"package":{"name":"libgsf","ecosystem":"Debian:14","purl":"pkg:deb/debian/libgsf?arch=source&distro=forky"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1.14.2-1"}]}],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2006-4514.json"}}],"schema_version":"1.9.0"}