CVE-2009-1534

Buffer overflow in the Office Web Components ActiveX Control in Microsoft Office XP SP3, Office 2000 Web Components SP3, Office XP Web Components SP3, BizTalk Server 2002, and Visual Studio .NET 2003 SP1 allows remote attackers to execute arbitrary code via crafted property values, aka "Office Web Components Buffer Overflow Vulnerability."
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:microsoft:biztalk_server:2002:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:isa_server:2004:sp3:enterprise:*:*:*:*:*
cpe:2.3:a:microsoft:isa_server:2004:sp3:standard:*:*:*:*:*
cpe:2.3:a:microsoft:isa_server:2006:sp1:enterprise:*:*:*:*:*
cpe:2.3:a:microsoft:isa_server:2006:sp1:standard:*:*:*:*:*
cpe:2.3:a:microsoft:office:-:*:small_business_accounting_2006:*:*:*:*:*
cpe:2.3:a:microsoft:office:2003:sp3:*:*:*:*:*:*
cpe:2.3:a:microsoft:office:xp:sp3:*:*:*:*:*:*
cpe:2.3:a:microsoft:office_web_components:2000:sp3:*:*:*:*:*:*
cpe:2.3:a:microsoft:office_web_components:2003:sp1:2007_microsoft_office:*:*:*:*:*
cpe:2.3:a:microsoft:office_web_components:2003:sp3:*:*:*:*:*:*
cpe:2.3:a:microsoft:office_web_components:xp:sp3:*:*:*:*:*:*
cpe:2.3:a:microsoft:visual_studio_.net:2003:sp1:*:*:*:*:*:*

History

21 Nov 2024, 01:02

Type Values Removed Values Added
References () http://osvdb.org/56916 - () http://osvdb.org/56916 -
References () http://www.securityfocus.com/bid/35992 - Patch () http://www.securityfocus.com/bid/35992 - Patch
References () http://www.securitytracker.com/id?1022708 - () http://www.securitytracker.com/id?1022708 -
References () http://www.us-cert.gov/cas/techalerts/TA09-223A.html - US Government Resource () http://www.us-cert.gov/cas/techalerts/TA09-223A.html - US Government Resource
References () https://docs.microsoft.com/en-us/security-updates/securitybulletins/2009/ms09-043 - () https://docs.microsoft.com/en-us/security-updates/securitybulletins/2009/ms09-043 -
References () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6326 - () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6326 -

Information

Published : 2009-08-12 17:30

Updated : 2024-11-21 01:02


NVD link : CVE-2009-1534

Mitre link : CVE-2009-1534

CVE.ORG link : CVE-2009-1534


JSON object : View

Products Affected

microsoft

  • visual_studio_.net
  • biztalk_server
  • isa_server
  • office_web_components
  • office
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer