PT-2018-16323 · Microsoft+1 · Office Word+1

Published

2018-07-11

·

Updated

2023-03-04

·

CVE-2018-3931

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Antenna House Office Server Document Converter version V6.1 Pro MR2 for Linux64 (6,1,2018,0312)
Description A crafted Microsoft Word document can cause an out-of-bounds write, leading to remote code execution. The issue is related to the putShapeProperty method.
Recommendations For Antenna House Office Server Document Converter version V6.1 Pro MR2 for Linux64 (6,1,2018,0312), consider disabling the putShapeProperty method as a temporary workaround until a patch is available.

Exploit

Fix

Memory Corruption

Weakness Enumeration

Related Identifiers

CVE-2018-3931

Affected Products

Antenna House Office Server Document Converter
Office Word