Buffer overflow in msjet40.dll before 4.0.9505.0 in Microsoft Jet Database Engine allows remote attackers to execute arbitrary code via a crafted Word file, as exploited in the wild in March 2008. NOTE: as of 20080513, Microsoft has stated that this is the same issue as CVE-2007-6026.
References
Configurations
Configuration 1 (hide)
AND |
|
History
21 Nov 2024, 00:43
Type | Values Removed | Values Added |
---|---|---|
References | () http://marc.info/?l=bugtraq&m=121129490723574&w=2 - | |
References | () http://www.kb.cert.org/vuls/id/936529 - US Government Resource | |
References | () http://www.microsoft.com/technet/security/advisory/950627.mspx - | |
References | () http://www.securitytracker.com/id?1019686 - | |
References | () https://docs.microsoft.com/en-us/security-updates/securitybulletins/2008/ms08-028 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/41380 - |
Information
Published : 2008-03-25 16:44
Updated : 2024-11-21 00:43
NVD link : CVE-2008-1092
Mitre link : CVE-2008-1092
CVE.ORG link : CVE-2008-1092
JSON object : View
Products Affected
microsoft
- word
- windows_2003_server
- windows_xp
- windows_2000
CWE
CWE-119
Improper Restriction of Operations within the Bounds of a Memory Buffer