RETIRED: Microsoft Word Unspecified Remote Code Execution Vulnerability
BID:28011
Info
RETIRED: Microsoft Word Unspecified Remote Code Execution Vulnerability
| Bugtraq ID: | 28011 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Feb 26 2008 12:00AM |
| Updated: | Feb 27 2008 08:42PM |
| Credit: | The discoverer of this issue has not yet been disclosed. |
| Vulnerable: |
Microsoft Word X for Mac Microsoft Word Viewer 2003 0 Microsoft Word 98(J) SR2 Microsoft Word 98(J) SR1 Microsoft Word 98(J) Microsoft Word 98 Korean Version Microsoft Word 98 Japanese Version Microsoft Word 98 Chinese Version Microsoft Word 98 Microsoft Word 97 Korean Version Microsoft Word 97 Japanese Version Microsoft Word 97 Chinese Version Microsoft Word 97 SR2 Microsoft Word 97 SR1 Microsoft Word 97 Microsoft Word 95 Microsoft Word 2007 0 Microsoft Word 2007 0 Microsoft Word 2004 for Mac 0 Microsoft Word 2003 SP2 Microsoft Word 2003 SP1 Microsoft Word 2003 Microsoft Word 2002 SP3 Microsoft Word 2002 SP2 Microsoft Word 2002 SP1 Microsoft Word 2002 Microsoft Word 2000 Korean Version Microsoft Word 2000 Japanese Version Microsoft Word 2000 Chinese Version Microsoft Word 2000 SR1a Microsoft Word 2000 SR1 Microsoft Word 2000 SP3 Microsoft Word 2000 SP2 Microsoft Word 2000 Microsoft Office Word 2007 0 Microsoft Office Word 2003 Viewer SP3 Microsoft Office Word 2003 Viewer 0 |
| Not Vulnerable: | |
Discussion
RETIRED: Microsoft Word Unspecified Remote Code Execution Vulnerability
Microsoft Word is prone to an unspecified remote code-execution vulnerability.
Very few details are available regarding this issue. We will update this BID as more information emerges.
It is unknown at this time which specific versions of the application are affected.
NOTE: This BID is being retired because the vulnerability is already covered in BID 23804 (Microsoft Word Array Remote Code Execution Vulnerability).
Microsoft Word is prone to an unspecified remote code-execution vulnerability.
Very few details are available regarding this issue. We will update this BID as more information emerges.
It is unknown at this time which specific versions of the application are affected.
NOTE: This BID is being retired because the vulnerability is already covered in BID 23804 (Microsoft Word Array Remote Code Execution Vulnerability).
Exploit / POC
RETIRED: Microsoft Word Unspecified Remote Code Execution Vulnerability
This issue was detected in the wild. Specifically, an email scam with a malicious attachment that exploits this issue is known to be circulating.
This issue was detected in the wild. Specifically, an email scam with a malicious attachment that exploits this issue is known to be circulating.
Solution / Fix
RETIRED: Microsoft Word Unspecified Remote Code Execution Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
NOTE: This BID is being retired because the vulnerability is already covered in BID 23804 (Microsoft Word Array Remote Code Execution Vulnerability).
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
NOTE: This BID is being retired because the vulnerability is already covered in BID 23804 (Microsoft Word Array Remote Code Execution Vulnerability).
References
RETIRED: Microsoft Word Unspecified Remote Code Execution Vulnerability
References:
References:
- Microsoft Word Homepage (Microsoft )
- Olympic spam carries malicious code: MessageLabs (SC Magazine)