Buffer Overflow in Google Earth Leads to Service Disruption
CVE-2006-7157

Currently unrated

Key Information:

Vendor
Google
Status
Vendor
CVE Published:
7 March 2007

Summary

A buffer overflow vulnerability in the beta version of Google Earth (v4.0.2091) presents a risk of denial of service through the processing of KML or KMZ files containing excessively long href elements. This flaw enables remote attackers, when aided by the user, to disrupt the application’s functionality, potentially leading to crashes or unexpected behavior. Proper validation of incoming file data is crucial to safeguard against such exploits.

References

EPSS Score

6% chance of being exploited in the next 30 days.

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.