Stack-based buffer overflow in Microsoft Office Word 2002 SP3, 2003 SP3, and 2007 SP1 and SP2; Microsoft Office for Mac 2004 and 2008; Open XML File Format Converter for Mac; Microsoft Office Word Viewer 2003 SP3; Microsoft Office Word Viewer; and Microsoft Office Compatibility Pack for Word, Excel, and PowerPoint 2007 File Formats SP1 and SP2 allows remote attackers to execute arbitrary code via a Word document with a crafted tag containing an invalid length field, aka "Word Buffer Overflow Vulnerability."
2009-06-10T18:00:00.313
2025-04-09T00:30:58.490
Deferred
CVSSv3.1: 7.8 (HIGH)
AV:N/AC:M/Au:N/C:C/I:C/A:C
8.6
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | microsoft | office | 2000 | Yes |
Application | microsoft | office | 2003 | Yes |
Application | microsoft | office | 2004 | Yes |
Application | microsoft | office | 2007 | Yes |
Application | microsoft | office | 2007 | Yes |
Application | microsoft | office | 2008 | Yes |
Application | microsoft | office | xp | Yes |
Application | microsoft | office_compatibility_pack | 2007 | Yes |
Application | microsoft | office_compatibility_pack | 2007 | Yes |
Application | microsoft | office_word_viewer | - | Yes |
Application | microsoft | office_word_viewer | 2003 | Yes |
Application | microsoft | open_xml_file_format_converter | - | Yes |