Microsoft Word Malformed Document Buffer Overflow Vulnerability
BID:13122
Info
Microsoft Word Malformed Document Buffer Overflow Vulnerability
| Bugtraq ID: | 13122 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2004-0963 |
| Remote: | Yes |
| Local: | No |
| Published: | Apr 12 2005 12:00AM |
| Updated: | Jul 12 2009 12:56PM |
| Credit: | Discovery is credited to Alex Li. |
| Vulnerable: |
Microsoft Works Suite 2004 Microsoft Works Suite 2003 Microsoft Works Suite 2002 Microsoft Works Suite 2001 Microsoft Word Viewer 2003 0 Microsoft Word 2003 Microsoft Word 2002 SP3 Microsoft Word 2002 SP2 Microsoft Word 2002 SP1 Microsoft Word 2002 Microsoft Word 2000 Korean Version Microsoft Word 2000 Japanese Version Microsoft Word 2000 Chinese Version Microsoft Word 2000 SR1a Microsoft Word 2000 SR1 Microsoft Word 2000 SP3 Microsoft Word 2000 SP2 Microsoft Word 2000 |
| Not Vulnerable: | |
Discussion
Microsoft Word Malformed Document Buffer Overflow Vulnerability
Microsoft Word is prone to a buffer overflow vulnerability. This issue presents itself when Microsoft Word attempts to parse a malformed document. This could result in execution of arbitrary code in the context of a user who opens the malicious document.
Internet Explorer is a likely attack vector as Word may be opened to handle the document when the user clicks a link.
This issue was originally described as part of BID 11350.
Microsoft Word is prone to a buffer overflow vulnerability. This issue presents itself when Microsoft Word attempts to parse a malformed document. This could result in execution of arbitrary code in the context of a user who opens the malicious document.
Internet Explorer is a likely attack vector as Word may be opened to handle the document when the user clicks a link.
This issue was originally described as part of BID 11350.
Exploit / POC
Microsoft Word Malformed Document Buffer Overflow Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
Microsoft Word Malformed Document Buffer Overflow Vulnerability
Solution:
Microsoft has released updates to address this issue in supported versions of affected software.
UPDATE: Fixes are available for Microsoft Word 2003 Viewer.
Microsoft Word 2003
Microsoft Word 2000 Japanese Version
Microsoft Word 2002 SP1
Microsoft Word Viewer 2003 0
Microsoft Works Suite 2003
Microsoft Word 2000
Microsoft Works Suite 2002
Microsoft Word 2000 SR1a
Microsoft Works Suite 2001
Microsoft Word 2000 Korean Version
Microsoft Works Suite 2004
Microsoft Word 2002 SP2
Microsoft Word 2000 SR1
Microsoft Word 2000 Chinese Version
Microsoft Word 2002
Microsoft Word 2000 SP3
Microsoft Word 2000 SP2
Microsoft Word 2002 SP3
Solution:
Microsoft has released updates to address this issue in supported versions of affected software.
UPDATE: Fixes are available for Microsoft Word 2003 Viewer.
Microsoft Word 2003
-
Microsoft Security Update for Word 2003 (KB887979)
http://www.microsoft.com/downloads/details.aspx?familyid=9158279D-4421 -4932-9318-02CA829A9B43&displaylang=en
Microsoft Word 2000 Japanese Version
-
Microsoft Security Update for Word 2000 (KB887977)
http://www.microsoft.com/downloads/details.aspx?familyid=9F4B6868-2F94 -478F-B0BC-0DA3E0571523&displaylang=en
Microsoft Word 2002 SP1
-
Microsoft Security Update for Word 2002 (KB887978)
http://www.microsoft.com/downloads/details.aspx?familyid=34998255-E004 -4A29-9418-35C5818E54CB&displaylang=en
Microsoft Word Viewer 2003 0
-
Microsoft Word Viewer 2003
http://www.microsoft.com/downloads/details.aspx?familyid=95E24C87-8732 -48D5-8689-AB826E7B8FDF&displaylang=en
Microsoft Works Suite 2003
-
Microsoft Security Update for Word 2002 (KB887978)
http://www.microsoft.com/downloads/details.aspx?familyid=34998255-E004 -4A29-9418-35C5818E54CB&displaylang=en
Microsoft Word 2000
-
Microsoft Security Update for Word 2000 (KB887977)
http://www.microsoft.com/downloads/details.aspx?familyid=9F4B6868-2F94 -478F-B0BC-0DA3E0571523&displaylang=en
Microsoft Works Suite 2002
-
Microsoft Security Update for Word 2002 (KB887978)
http://www.microsoft.com/downloads/details.aspx?familyid=34998255-E004 -4A29-9418-35C5818E54CB&displaylang=en
Microsoft Word 2000 SR1a
-
Microsoft Security Update for Word 2000 (KB887977)
http://www.microsoft.com/downloads/details.aspx?familyid=9F4B6868-2F94 -478F-B0BC-0DA3E0571523&displaylang=en
Microsoft Works Suite 2001
-
Microsoft Security Update for Word 2000 (KB887977)
http://www.microsoft.com/downloads/details.aspx?familyid=9F4B6868-2F94 -478F-B0BC-0DA3E0571523&displaylang=en
Microsoft Word 2000 Korean Version
-
Microsoft Security Update for Word 2000 (KB887977)
http://www.microsoft.com/downloads/details.aspx?familyid=9F4B6868-2F94 -478F-B0BC-0DA3E0571523&displaylang=en
Microsoft Works Suite 2004
-
Microsoft Security Update for Word 2002 (KB887978)
http://www.microsoft.com/downloads/details.aspx?familyid=34998255-E004 -4A29-9418-35C5818E54CB&displaylang=en
Microsoft Word 2002 SP2
-
Microsoft Security Update for Word 2002 (KB887978)
http://www.microsoft.com/downloads/details.aspx?familyid=34998255-E004 -4A29-9418-35C5818E54CB&displaylang=en
Microsoft Word 2000 SR1
-
Microsoft Security Update for Word 2000 (KB887977)
http://www.microsoft.com/downloads/details.aspx?familyid=9F4B6868-2F94 -478F-B0BC-0DA3E0571523&displaylang=en
Microsoft Word 2000 Chinese Version
-
Microsoft Security Update for Word 2000 (KB887977)
http://www.microsoft.com/downloads/details.aspx?familyid=9F4B6868-2F94 -478F-B0BC-0DA3E0571523&displaylang=en
Microsoft Word 2002
-
Microsoft Security Update for Word 2002 (KB887978)
http://www.microsoft.com/downloads/details.aspx?familyid=34998255-E004 -4A29-9418-35C5818E54CB&displaylang=en
Microsoft Word 2000 SP3
-
Microsoft Security Update for Word 2000 (KB887977)
http://www.microsoft.com/downloads/details.aspx?familyid=9F4B6868-2F94 -478F-B0BC-0DA3E0571523&displaylang=en
Microsoft Word 2000 SP2
-
Microsoft Security Update for Word 2000 (KB887977)
http://www.microsoft.com/downloads/details.aspx?familyid=9F4B6868-2F94 -478F-B0BC-0DA3E0571523&displaylang=en
Microsoft Word 2002 SP3
-
Microsoft Security Update for Word 2002 (KB887978)
http://www.microsoft.com/downloads/details.aspx?familyid=34998255-E004 -4A29-9418-35C5818E54CB&displaylang=en
References
Microsoft Word Malformed Document Buffer Overflow Vulnerability
References:
References: