Buffer overflow in Microsoft Office 2003 SP3 and Office 2011 for Mac allows remote attackers to execute arbitrary code via crafted PNG data in an Office document, leading to improper memory allocation, aka "Office Buffer Overflow Vulnerability."
References
Link | Resource |
---|---|
http://www.us-cert.gov/ncas/alerts/TA13-168A | Third Party Advisory US Government Resource |
http://www.us-cert.gov/ncas/alerts/TA13-168A | Third Party Advisory US Government Resource |
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2013/ms13-051 | Patch Vendor Advisory |
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2013/ms13-051 | Patch Vendor Advisory |
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A16713 | Broken Link |
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A16713 | Broken Link |
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A16732 | Broken Link |
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A16732 | Broken Link |
Configurations
Configuration 1 (hide)
|
History
20 Dec 2024, 03:54
Type | Values Removed | Values Added |
---|---|---|
References | () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A16713 - Broken Link | |
References | () https://docs.microsoft.com/en-us/security-updates/securitybulletins/2013/ms13-051 - Patch, Vendor Advisory | |
References | () http://www.us-cert.gov/ncas/alerts/TA13-168A - Third Party Advisory, US Government Resource | |
References | () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A16732 - Broken Link |
28 Jun 2024, 14:18
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-120 | |
References | (CERT) http://www.us-cert.gov/ncas/alerts/TA13-168A - Third Party Advisory, US Government Resource | |
References | (OVAL) https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A16732 - Broken Link | |
References | (OVAL) https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A16713 - Broken Link | |
References | (MS) https://docs.microsoft.com/en-us/security-updates/securitybulletins/2013/ms13-051 - Patch, Vendor Advisory | |
CVSS |
v2 : v3 : |
v2 : 9.3
v3 : 7.8 |
CPE | cpe:2.3:a:microsoft:office:2011:*:*:*:*:macos:*:* |
Information
Published : 2013-06-12 03:29
Updated : 2025-04-04 15:24
NVD link : CVE-2013-1331
Mitre link : CVE-2013-1331
JSON object : View
Products Affected
microsoft
- office
CWE
CWE-120
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')