[Forgot Password]
Login  Register Subscribe

30430

 
 

423868

 
 

247862

 
 

909

 
 

194603

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

Buffer Overflow Vulnerability in Microsoft Office Publisher - MS10-023

ID: oval:org.secpod.oval:def:2037Date: (C)2011-08-24   (M)2022-10-10
Class: PATCHFamily: windows




The host is missing a critical security update according to Microsoft security bulletin, MS10-023. The update is required to fix buffer overflow vulnerability. A flaw is present in the Microsoft Office Publisher, which fails to handle a specially crafted Publisher file. Successful exploitation allows an attacker to gain sensitive information such as same user rights as the logged-on user or execute code.

Platform:
Microsoft Windows 2000
Microsoft Windows XP
Microsoft Windows Server 2003
Microsoft Windows Vista
Microsoft Windows Server 2008
Microsoft Windows 7
Product:
Microsoft Office Publisher 2002
Microsoft Office Publisher 2003
Microsoft Office Publisher 2007
Reference:
MS10-023
CVE-2010-0479
CVE    1
CVE-2010-0479
CPE    7
cpe:/a:microsoft:publisher:2003:sp3
cpe:/a:microsoft:publisher:2002:sp3
cpe:/a:microsoft:publisher:2007:sp2
cpe:/a:microsoft:publisher:2007:sp3
...
XCCDF    7
xccdf_com.secpod_benchmark_microsoft-windows-2000
xccdf_com.secpod_benchmark_microsoft-windows-server-2008
xccdf_com.secpod_benchmark_microsoft-windows-7
xccdf_com.secpod_benchmark_microsoft-windows-server-2003
...

© SecPod Technologies