Unspecified vulnerability in mso.dll in Microsoft Office 2000, XP, and 2003, and Microsoft PowerPoint 2000, XP, and 2003, allows remote user-assisted attackers to execute arbitrary code via a malformed record in a (1) .DOC, (2) .PPT, or (3) .XLS file that triggers memory corruption, related to an "array boundary condition" (possibly an array index overflow), a different vulnerability than CVE-2006-3434, CVE-2006-3650, and CVE-2006-3868.
2006-10-10T22:07:00.000
2025-04-09T00:30:58.490
Deferred
CVSSv2: 9.3 (HIGH)
AV:N/AC:M/Au:N/C:C/I:C/A:C
8.6
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | microsoft | office | 2000 | Yes |
Application | microsoft | office | 2003 | Yes |
Application | microsoft | office | 2003 | Yes |
Application | microsoft | office | 2004 | Yes |
Application | microsoft | office | v.x | Yes |
Application | microsoft | office | xp | Yes |
Application | microsoft | project | 2000 | Yes |
Application | microsoft | project | 2002 | Yes |
Application | microsoft | visio | 2002 | Yes |