MS.WordPad.Office.Text.Converter.Buffer.Overflow

description-logoDescription

This indicates an exploit attempt against a stack-based buffer-overflow vulnerability in the Microsoft Word 8 converter.
The vulnerability is caused by an error when the vulnerable software handles a crafted Word 6 file with malformed data which could lead to remote code execution.

affected-products-logoAffected Products

Windows Operating System and Components:
Microsoft 2000 Service Pack 4
Microsoft XP Service Pack 2
Microsoft XP Service Pack 3
Microsoft XP Professional x64 Edition
Microsoft XP Professional x64 Edition Service Pack 2
Microsoft Server 2003 Service Pack 1
Microsoft Server 2003 Service Pack 2
Microsoft Server 2003 x64 Edition
Microsoft Server 2003 x64 Edition Service Pack 2
Windows Server 2003 with Service Pack 1 for Itanium-based Systems
Windows Server 2003 with Service Pack 2 for Itanium-based Systems
Microsoft Office:
Microsoft Office 2000 Service Pack 3
Microsoft Office XP Service Pack 3
Microsoft Office Converter Pack

Impact logoImpact

System Compromise: Remote attackers can gain control of vulnerable systems.

recomended-action-logoRecommended Actions

Apply the patch, available from the vendor's website:
http://www.microsoft.com/technet/security/Bulletin/MS09-010.mspx

Coverage

IPS (Regular DB)
IPS (Extended DB)

Version Updates

Date Version Status Detail
2024-07-10 28.824
Modified
Name:MS.
Wordpad.
Office.
Text.
Converter.
Buffer.
Overflow:MS.
WordPad.
Office.
Text.
Converter.
Buffer.
Overflow