Информационная безопасность
[RU] switch to
English Version



CVECVE-2008-1434
СтатусUNKNOWN
ОписаниеUse-after-free vulnerability in Microsoft Word in Office 2000 and XP SP3, 2003 SP2 and SP3, and 2007 Office System SP1 and earlier allows remote attackers to execute arbitrary code via an HTML document with a large number of Cascading Style Sheets (CSS) selectors, related to a "memory handling error" that triggers memory corruption.
ВажностьHigh
CVSS score9,3
CVSS vector(AV:N/AC:M/Au:N/C:C/I:C/A:C)
PhaseASSIGNED (12.04.2011)
NVD:http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-1434
ReferencesBID : 29105
 CERT : TA08-134A
 HP : SSRT080071
 HP : SSRT080071
 IDEFENSE : 20080513 Microsoft Word CSS Processing Memory Corruption Vulnerability
 MS : MS08-026
 OVAL : oval:org.mitre.oval:def:5012
 SECTRACK : 1020014
 SECUNIA : 30143
 VUPEN : ADV-2008-1504
SecurityVulns:Многочисленные уязвимости безопасности в Microsoft Word

О сайте | Условия использования
© SecurityVulns, 3APA3A, Владимир Дубровин
Нижний Новгород

 
 



Rating@Mail.ru
test server