Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2010-3947

Опубликовано: 16 дек. 2010
Источник: nvd
CVSS2: 9.3
EPSS Средний

Описание

Heap-based buffer overflow in the TIFF image converter in the graphics filters in Microsoft Office XP SP3, Office Converter Pack, and Works 9 allows remote attackers to execute arbitrary code via a crafted TIFF image in an Office document, aka "TIFF Image Converter Heap Overflow Vulnerability."

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:microsoft:office:xp:sp3:*:*:*:*:*:*
cpe:2.3:a:microsoft:office_converter_pack:*:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:works:9.0:*:*:*:*:*:*:*

EPSS

Процентиль: 98%
0.57681
Средний

9.3 Critical

CVSS2

Дефекты

CWE-119

Связанные уязвимости

github
больше 3 лет назад

Heap-based buffer overflow in the TIFF image converter in the graphics filters in Microsoft Office XP SP3, Office Converter Pack, and Works 9 allows remote attackers to execute arbitrary code via a crafted TIFF image in an Office document, aka "TIFF Image Converter Heap Overflow Vulnerability."

EPSS

Процентиль: 98%
0.57681
Средний

9.3 Critical

CVSS2

Дефекты

CWE-119