Return to CVE list

CVE-2006-0009

5.1
Medium

CVE-2006-0009

secure@microsoft.com
Deferred

Description

Buffer overflow in Microsoft Office 2000 SP3, XP SP3, and other versions and packages, allows user-assisted attackers to execute arbitrary code via a routing slip that is longer than specified by the provided length field, as exploited by malware such as TROJ_MDROPPER.BH and Trojan.PPDropper.E in attacks against PowerPoint.

Exploits

No known exploits found for this CVE.

Search Exploit-DB

References

secure@microsoft.com
http://www.osvdb.org/23903
af854a3a-2127-422b-91ae-364da2661108
http://blogs.securiteam.com/?author=28
af854a3a-2127-422b-91ae-364da2661108
http://blogs.securiteam.com/?p=557
af854a3a-2127-422b-91ae-364da2661108
http://blogs.securiteam.com/?p=559
af854a3a-2127-422b-91ae-364da2661108
http://isc.sans.org/diary.php?storyid=1618
af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/19138
af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/19238
af854a3a-2127-422b-91ae-364da2661108
http://securitytracker.com/id?1015766
af854a3a-2127-422b-91ae-364da2661108
http://securitytracker.com/id?1016720
af854a3a-2127-422b-91ae-364da2661108
http://securitytracker.com/id?1016886
af854a3a-2127-422b-91ae-364da2661108
http://www.darkreading.com/document.asp?doc_id=101970
af854a3a-2127-422b-91ae-364da2661108
http://www.kb.cert.org/vuls/id/682820
af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/23903
af854a3a-2127-422b-91ae-364da2661108
http://www.securityfocus.com/bid/17000
af854a3a-2127-422b-91ae-364da2661108
http://www.securityfocus.com/bid/20059
af854a3a-2127-422b-91ae-364da2661108
http://www.us-cert.gov/cas/techalerts/TA06-073A.html
af854a3a-2127-422b-91ae-364da2661108
http://www.vupen.com/english/advisories/2006/0950
af854a3a-2127-422b-91ae-364da2661108
http://www.vupen.com/english/advisories/2006/3678