Microsoft Office CVE-2017-11882 Memory Corruption Vulnerability
BID:101757
Info
Microsoft Office CVE-2017-11882 Memory Corruption Vulnerability
| Bugtraq ID: | 101757 |
| Class: | Design Error |
| CVE: |
CVE-2017-11882 |
| Remote: | Yes |
| Local: | No |
| Published: | Nov 14 2017 12:00AM |
| Updated: | Feb 12 2019 11:00PM |
| Credit: | Denis Selianin from Embedi. |
| Vulnerable: |
Microsoft Office 2016 (64-bit edition) 0 Microsoft Office 2016 (32-bit edition) 0 Microsoft Office 2013 Service Pack 1 (64-bit editions) Microsoft Office 2013 Service Pack 1 (32-bit editions) Microsoft Office 2010 (64-bit edition) SP2 Microsoft Office 2010 (32-bit edition) SP2 Microsoft Office 2007 SP3 |
| Not Vulnerable: | |
Discussion
Microsoft Office CVE-2017-11882 Memory Corruption Vulnerability
Microsoft Office is prone to a memory-corruption vulnerability.
An attacker can leverage this issue to execute arbitrary code in the context of the currently logged-in user. Failed exploit attempts will likely result in denial of service conditions.
Microsoft Office is prone to a memory-corruption vulnerability.
An attacker can leverage this issue to execute arbitrary code in the context of the currently logged-in user. Failed exploit attempts will likely result in denial of service conditions.
Exploit / POC
Microsoft Office CVE-2017-11882 Memory Corruption Vulnerability
The researcher who discovered this issue has created a proof-of-concept and exploit information. Please see the references for more information. This vulnerability is being exploited as part of cyber espionage campaigns identified in Symantec MATI reports SYMC - 300725 and SYMC - 300824.
The researcher who discovered this issue has created a proof-of-concept and exploit information. Please see the references for more information. This vulnerability is being exploited as part of cyber espionage campaigns identified in Symantec MATI reports SYMC - 300725 and SYMC - 300824.
References
Microsoft Office CVE-2017-11882 Memory Corruption Vulnerability
References:
References:
- CVE-2017-11882 (Embedi)
- Microsoft Homepage (Microsoft)
- CVE-2017-11882 | Microsoft Office Memory Corruption Vulnerability (Microsoft)
- Inception Attackers Target Europe with Year-old Office Vulnerability (Palo Alto Networks)
- Vulnerability Note VU#421280 Microsoft Office Equation Editor stack buffer over (CERT)
- webdav_exec_CVE-2017-11882.py (Embedi)