PT-2009-3214 · Microsoft · Office Publisher
Lionel Dhauenens
·
Published
2009-07-15
·
Updated
2018-10-12
·
CVE-2009-0566
CVSS v2.0
9.3
High
| Vector | AV:N/AC:M/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Microsoft Office Publisher 2007 SP1
Description
The issue arises from the improper calculation of object handler data for Publisher files, allowing remote attackers to execute arbitrary code via a crafted file in a legacy format, triggering memory corruption. A remote code execution vulnerability exists in the way that Microsoft Office Publisher opens, imports, and converts files created in versions older than Microsoft Office Publisher 2007. An attacker could exploit this by creating a specially crafted Publisher file that could be included as an e-mail attachment or hosted on a specially crafted or compromised Web site. If a user were logged on with administrative user rights, an attacker who successfully exploited this could take complete control of an affected system, enabling them to install programs, view, change, or delete data, or create new accounts with full user rights.
Recommendations
For Microsoft Office Publisher 2007 SP1, consider applying security updates or patches to resolve the issue. As a temporary workaround, avoid opening or importing files from untrusted sources, and restrict access to the
Publisher application until a patch is available.Fix
RCE
Code Injection
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Office Publisher