|
|
|
![]() |
Vulnerability Note VU#409316Microsoft Office fails to properly handle document propertiesOverviewMicrosoft Office contains a buffer overflow when handling specially crafted document properties. This vulnerability could allow a remote attacker to execute arbitrary code.I. DescriptionMicrosoft Office applications fail to properly validate property fields resulting in a buffer overflow. When an Office document containing malformed a property field is opened with an Office application, system memory can be corrupted in a way that may allow an attacker to execute arbitrary code. Property fields include, but are not limited to document title, subject, and author.More information, including a list of affected Office applications, is available in Microsoft Security Bulletin MS06-038.
Microsoft addresses this vulnerability with the updates listed in Microsoft Security Bulletin MS06-038.
References
This vulnerability was reported in Microsoft Security Bulletin MS06-038. This document was written by Jeff Gennari.
If you have feedback, comments, or additional information about this vulnerability, please send us
email. |
|||||||||||||||||||||||||||||||||||||
|
|||||||||||||||||||||||||||||||||||||||