Stack-based buffer overflow in Microsoft Excel 2000 SP3, 2002 SP3, 2003 SP2 and SP3, and 2007 Gold and SP1; Office Excel Viewer 2003 SP3; Office Excel Viewer; Office Compatibility Pack for Word, Excel, and PowerPoint 2007 File Formats Gold and SP1; Office 2004 and 2008 for Mac; and Open XML File Format Converter for Mac allows remote attackers to execute arbitrary code via a BIFF file with a malformed record that triggers a user-influenced size calculation, aka "File Format Parsing Vulnerability."
2008-10-15T00:12:15.757
2025-04-09T00:30:58.490
Deferred
CVSSv2: 9.3 (HIGH)
AV:N/AC:M/Au:N/C:C/I:C/A:C
8.6
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | microsoft | excel | 2003 | Yes |
Application | microsoft | excel | 2003 | Yes |
Application | microsoft | excel | 2007 | Yes |
Application | microsoft | excel | 2007 | Yes |
Application | microsoft | excel_viewer | - | Yes |
Application | microsoft | excel_viewer | 2003 | Yes |
Application | microsoft | excel_viewer | 2003 | Yes |
Application | microsoft | office | 2004 | Yes |
Application | microsoft | office | 2008 | Yes |
Application | microsoft | office_compatibility_pack | 2007 | Yes |
Application | microsoft | office_compatibility_pack | 2007 | Yes |
Application | microsoft | open_xml_file_format_converter | - | Yes |