CVE-2008-2752

Microsoft Word 2000 9.0.2812 and 2003 11.8106.8172 does not properly handle unordered lists, which allows user-assisted remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via a crafted .doc file. NOTE: some of these details are obtained from third party information.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:microsoft:word:2000:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:word:2000:sp2:*:*:*:*:*:*
cpe:2.3:a:microsoft:word:2000:sp3:*:*:*:*:*:*
cpe:2.3:a:microsoft:word:2000:sr1:*:*:*:*:*:*
cpe:2.3:a:microsoft:word:2000:sr1a:*:*:*:*:*:*
cpe:2.3:a:microsoft:word:2003:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:word:2003:sp1:*:*:*:*:*:*
cpe:2.3:a:microsoft:word:2003:sp2:*:*:*:*:*:*
cpe:2.3:a:microsoft:word:2003:sp3:*:*:*:*:*:*

History

21 Nov 2024, 00:47

Type Values Removed Values Added
References () http://www.nullcode.com.ar/ncs/crash/video.htm - () http://www.nullcode.com.ar/ncs/crash/video.htm -
References () http://www.nullcode.com.ar/ncs/crash/video2.htm - () http://www.nullcode.com.ar/ncs/crash/video2.htm -
References () http://www.securityfocus.com/bid/29769 - () http://www.securityfocus.com/bid/29769 -
References () http://www.securityfocus.com/data/vulnerabilities/exploits/crash-word-1.doc - Exploit () http://www.securityfocus.com/data/vulnerabilities/exploits/crash-word-1.doc - Exploit
References () http://www.securityfocus.com/data/vulnerabilities/exploits/crash-word-2.doc - Exploit () http://www.securityfocus.com/data/vulnerabilities/exploits/crash-word-2.doc - Exploit
References () http://www.securityfocus.com/data/vulnerabilities/exploits/crash-word-3.doc - Exploit () http://www.securityfocus.com/data/vulnerabilities/exploits/crash-word-3.doc - Exploit
References () http://www.securityfocus.com/data/vulnerabilities/exploits/crash-word-4.doc - Exploit () http://www.securityfocus.com/data/vulnerabilities/exploits/crash-word-4.doc - Exploit
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/43155 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/43155 -

Information

Published : 2008-06-18 19:41

Updated : 2024-11-21 00:47


NVD link : CVE-2008-2752

Mitre link : CVE-2008-2752

CVE.ORG link : CVE-2008-2752


JSON object : View

Products Affected

microsoft

  • word
CWE
CWE-399

Resource Management Errors

NVD-CWE-noinfo