Microsoft Office 2000, XP, 2003, 2004 for Mac, and v.X for Mac do not properly parse the length of a chart record, which allows remote user-assisted attackers to execute arbitrary code via a Word document with an embedded malformed chart record that triggers an overwrite of pointer values with values from the document, a different vulnerability than CVE-2006-3434, CVE-2006-3864, and CVE-2006-3868.
References
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2006-10-10 22:07
Updated : 2025-04-09 00:30
NVD link : CVE-2006-3650
Mitre link : CVE-2006-3650
CVE.ORG link : CVE-2006-3650
JSON object : View
Products Affected
microsoft
- office
CWE
CWE-94
Improper Control of Generation of Code ('Code Injection')