PT-2009-3214 · Microsoft · Office Publisher

Lionel Dhauenens

·

Published

2009-07-15

·

Updated

2018-10-12

·

CVE-2009-0566

CVSS v2.0

9.3

High

VectorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Microsoft Office Publisher 2007 SP1
Description The issue arises from the improper calculation of object handler data for Publisher files, allowing remote attackers to execute arbitrary code via a crafted file in a legacy format, triggering memory corruption. A remote code execution vulnerability exists in the way that Microsoft Office Publisher opens, imports, and converts files created in versions older than Microsoft Office Publisher 2007. An attacker could exploit this by creating a specially crafted Publisher file that could be included as an e-mail attachment or hosted on a specially crafted or compromised Web site. If a user were logged on with administrative user rights, an attacker who successfully exploited this could take complete control of an affected system, enabling them to install programs, view, change, or delete data, or create new accounts with full user rights.
Recommendations For Microsoft Office Publisher 2007 SP1, consider applying security updates or patches to resolve the issue. As a temporary workaround, avoid opening or importing files from untrusted sources, and restrict access to the Publisher application until a patch is available.

Fix

RCE

Code Injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2009-0566

Affected Products

Office Publisher