Microsoft Office Publisher Remote Denial of Service Vulnerability
BID:22724
Info
Microsoft Office Publisher Remote Denial of Service Vulnerability
| Bugtraq ID: | 22724 |
| Class: | Design Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Feb 26 2007 12:00AM |
| Updated: | Feb 26 2007 08:06PM |
| Credit: | Tom Ferris discovered this vulnerability. |
| Vulnerable: |
Microsoft Publisher 2007 0 Microsoft Office 2007 0 |
| Not Vulnerable: | |
Discussion
Microsoft Office Publisher Remote Denial of Service Vulnerability
Microsoft Office Publisher is prone to a remote denial-of-service vulnerability because the application fails to properly handle malformed files.
Successfully exploiting this issue allows remote attackers to crash the affected application, denying service to legitimate users.
Microsoft Office Publisher 2007 is vulnerable; other versions may also be affected.
Microsoft Office Publisher is prone to a remote denial-of-service vulnerability because the application fails to properly handle malformed files.
Successfully exploiting this issue allows remote attackers to crash the affected application, denying service to legitimate users.
Microsoft Office Publisher 2007 is vulnerable; other versions may also be affected.
Exploit / POC
Microsoft Office Publisher Remote Denial of Service Vulnerability
The following file demonstrates this issue:
The following file demonstrates this issue:
Solution / Fix
Microsoft Office Publisher Remote Denial of Service Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: mailto:[email protected].
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: mailto:[email protected].
References
Microsoft Office Publisher Remote Denial of Service Vulnerability
References:
References:
- Microsoft Office Product Homepage (Microsoft)
- Microsoft Office Publisher 2007 DoS (Tom Ferris)