MS.WordPad.Office.Text.Converter.Buffer.Overflow
Description
This indicates an exploit attempt against a stack-based buffer-overflow vulnerability in the Microsoft Word 8 converter.
The vulnerability is caused by an error when the vulnerable software handles a crafted Word 6 file with malformed data which could lead to remote code execution.
Affected Products
Windows Operating System and Components:
Microsoft 2000 Service Pack 4
Microsoft XP Service Pack 2
Microsoft XP Service Pack 3
Microsoft XP Professional x64 Edition
Microsoft XP Professional x64 Edition Service Pack 2
Microsoft Server 2003 Service Pack 1
Microsoft Server 2003 Service Pack 2
Microsoft Server 2003 x64 Edition
Microsoft Server 2003 x64 Edition Service Pack 2
Windows Server 2003 with Service Pack 1 for Itanium-based Systems
Windows Server 2003 with Service Pack 2 for Itanium-based Systems
Microsoft Office:
Microsoft Office 2000 Service Pack 3
Microsoft Office XP Service Pack 3
Microsoft Office Converter Pack
Impact
System Compromise: Remote attackers can gain control of vulnerable systems.
Recommended Actions
Apply the patch, available from the vendor's website:
http://www.microsoft.com/technet/security/Bulletin/MS09-010.mspx
Coverage
| IPS (Regular DB) | |
| IPS (Extended DB) |
Version Updates
| Date | Version | Status | Detail |
|---|---|---|---|
| 2024-07-10 | 28.824 |
Modified
|
Name:MS. Wordpad. Office. Text. Converter. Buffer. Overflow:MS. WordPad. Office. Text. Converter. Buffer. Overflow |