Microsoft Access CVE-2013-3157 Memory Corruption Vulnerability
BID:62231
Info
Microsoft Access CVE-2013-3157 Memory Corruption Vulnerability
Bugtraq ID:
62231
Class:
Unknown
CVE:
CVE-2013-3157
Remote:
Yes
Local:
No
Published:
Sep 10 2013 12:00AM
Updated:
Sep 10 2013 12:00AM
Credit:
Kaveh Ghaemmaghami of Secunia SVCRP
Vulnerable:
Microsoft Access 2013 (64-bit editions)
+
Microsoft Office XP SP2
-
Microsoft Windows 2000 Professional SP3
-
Microsoft Windows 2000 Professional SP2
-
Microsoft Windows 2000 Professional SP1
-
Microsoft Windows 2000 Professional
-
Microsoft Windows 98
-
Microsoft Windows 98SE
-
Microsoft Windows ME
-
Microsoft Windows NT Workstation 4.0 SP6a
-
Microsoft Windows NT Workstation 4.0 SP6
-
Microsoft Windows NT Workstation 4.0 SP5
-
Microsoft Windows NT Workstation 4.0 SP4
-
Microsoft Windows NT Workstation 4.0 SP3
-
Microsoft Windows NT Workstation 4.0 SP2
-
Microsoft Windows NT Workstation 4.0 SP1
-
Microsoft Windows NT Workstation 4.0
-
Microsoft Windows XP Home SP1
-
Microsoft Windows XP Home
-
Microsoft Windows XP Professional SP1
-
Microsoft Windows XP Professional
Microsoft Access 2013 (32-bit editions)
+
Microsoft Office XP SP2
-
Microsoft Windows 2000 Professional SP3
-
Microsoft Windows 2000 Professional SP2
-
Microsoft Windows 2000 Professional SP1
-
Microsoft Windows 2000 Professional
-
Microsoft Windows 98
-
Microsoft Windows 98SE
-
Microsoft Windows ME
-
Microsoft Windows NT Workstation 4.0 SP6a
-
Microsoft Windows NT Workstation 4.0 SP6
-
Microsoft Windows NT Workstation 4.0 SP5
-
Microsoft Windows NT Workstation 4.0 SP4
-
Microsoft Windows NT Workstation 4.0 SP3
-
Microsoft Windows NT Workstation 4.0 SP2
-
Microsoft Windows NT Workstation 4.0 SP1
-
Microsoft Windows NT Workstation 4.0
-
Microsoft Windows XP Home SP1
-
Microsoft Windows XP Home
-
Microsoft Windows XP Professional SP1
-
Microsoft Windows XP Professional
Microsoft Access 2010 SP2 (64-bit editions
+
Microsoft Office XP SP2
-
Microsoft Windows 2000 Professional SP3
-
Microsoft Windows 2000 Professional SP2
-
Microsoft Windows 2000 Professional SP1
-
Microsoft Windows 2000 Professional
-
Microsoft Windows 98
-
Microsoft Windows 98SE
-
Microsoft Windows ME
-
Microsoft Windows NT Workstation 4.0 SP6a
-
Microsoft Windows NT Workstation 4.0 SP6
-
Microsoft Windows NT Workstation 4.0 SP5
-
Microsoft Windows NT Workstation 4.0 SP4
-
Microsoft Windows NT Workstation 4.0 SP3
-
Microsoft Windows NT Workstation 4.0 SP2
-
Microsoft Windows NT Workstation 4.0 SP1
-
Microsoft Windows NT Workstation 4.0
-
Microsoft Windows XP Home SP1
-
Microsoft Windows XP Home
-
Microsoft Windows XP Professional SP1
-
Microsoft Windows XP Professional
Microsoft Access 2010 SP2 (32-bit editions
+
Microsoft Office XP SP2
-
Microsoft Windows 2000 Professional SP3
-
Microsoft Windows 2000 Professional SP2
-
Microsoft Windows 2000 Professional SP1
-
Microsoft Windows 2000 Professional
-
Microsoft Windows 98
-
Microsoft Windows 98SE
-
Microsoft Windows ME
-
Microsoft Windows NT Workstation 4.0 SP6a
-
Microsoft Windows NT Workstation 4.0 SP6
-
Microsoft Windows NT Workstation 4.0 SP5
-
Microsoft Windows NT Workstation 4.0 SP4
-
Microsoft Windows NT Workstation 4.0 SP3
-
Microsoft Windows NT Workstation 4.0 SP2
-
Microsoft Windows NT Workstation 4.0 SP1
-
Microsoft Windows NT Workstation 4.0
-
Microsoft Windows XP Home SP1
-
Microsoft Windows XP Home
-
Microsoft Windows XP Professional SP1
-
Microsoft Windows XP Professional
Microsoft Access 2010 SP1 (64-bit editions
+
Microsoft Office XP SP2
-
Microsoft Windows 2000 Professional SP3
-
Microsoft Windows 2000 Professional SP2
-
Microsoft Windows 2000 Professional SP1
-
Microsoft Windows 2000 Professional
-
Microsoft Windows 98
-
Microsoft Windows 98SE
-
Microsoft Windows ME
-
Microsoft Windows NT Workstation 4.0 SP6a
-
Microsoft Windows NT Workstation 4.0 SP6
-
Microsoft Windows NT Workstation 4.0 SP5
-
Microsoft Windows NT Workstation 4.0 SP4
-
Microsoft Windows NT Workstation 4.0 SP3
-
Microsoft Windows NT Workstation 4.0 SP2
-
Microsoft Windows NT Workstation 4.0 SP1
-
Microsoft Windows NT Workstation 4.0
-
Microsoft Windows XP Home SP1
-
Microsoft Windows XP Home
-
Microsoft Windows XP Professional SP1
-
Microsoft Windows XP Professional
Microsoft Access 2010 SP1 (32-bit editions
+
Microsoft Office XP SP2
-
Microsoft Windows 2000 Professional SP3
-
Microsoft Windows 2000 Professional SP2
-
Microsoft Windows 2000 Professional SP1
-
Microsoft Windows 2000 Professional
-
Microsoft Windows 98
-
Microsoft Windows 98SE
-
Microsoft Windows ME
-
Microsoft Windows NT Workstation 4.0 SP6a
-
Microsoft Windows NT Workstation 4.0 SP6
-
Microsoft Windows NT Workstation 4.0 SP5
-
Microsoft Windows NT Workstation 4.0 SP4
-
Microsoft Windows NT Workstation 4.0 SP3
-
Microsoft Windows NT Workstation 4.0 SP2
-
Microsoft Windows NT Workstation 4.0 SP1
-
Microsoft Windows NT Workstation 4.0
-
Microsoft Windows XP Home SP1
-
Microsoft Windows XP Home
-
Microsoft Windows XP Professional SP1
-
Microsoft Windows XP Professional
Microsoft Access 2007 SP3
+
Microsoft Office XP SP2
-
Microsoft Windows 2000 Professional SP3
-
Microsoft Windows 2000 Professional SP2
-
Microsoft Windows 2000 Professional SP1
-
Microsoft Windows 2000 Professional
-
Microsoft Windows 98
-
Microsoft Windows 98SE
-
Microsoft Windows ME
-
Microsoft Windows NT Workstation 4.0 SP6a
-
Microsoft Windows NT Workstation 4.0 SP6
-
Microsoft Windows NT Workstation 4.0 SP5
-
Microsoft Windows NT Workstation 4.0 SP4
-
Microsoft Windows NT Workstation 4.0 SP3
-
Microsoft Windows NT Workstation 4.0 SP2
-
Microsoft Windows NT Workstation 4.0 SP1
-
Microsoft Windows NT Workstation 4.0
-
Microsoft Windows XP Home SP1
-
Microsoft Windows XP Home
-
Microsoft Windows XP Professional SP1
-
Microsoft Windows XP Professional
Not Vulnerable:
Discussion
Microsoft Access CVE-2013-3157 Memory Corruption Vulnerability
Microsoft Access is prone to a memory-corruption vulnerability.
Attackers can exploit this issue to execute arbitrary code in the context of the currently logged-in user. Failed attacks will cause denial-of-service conditions.
Exploit / POC
Microsoft Access CVE-2013-3157 Memory Corruption Vulnerability
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Microsoft Access CVE-2013-3157 Memory Corruption Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
Microsoft Access CVE-2013-3157 Memory Corruption Vulnerability