CVE-2008-0103

Microsoft Office 2000/2003/XP/2004 for Mac RCE via Malformed Object

Title source: llm
STIX 2.1

Description

Unspecified vulnerability in Microsoft Office 2000 SP3, Office XP SP3, Office 2003 SP2, and Office 2004 for Mac allows remote attackers to execute arbitrary code via an Office document that contains a malformed object, related to a "memory handling error," aka "Microsoft Office Execution Jump Vulnerability."

References (8)

Core 8
Core References
Mailing List vendor-advisory x_refsource_hp
http://marc.info/?l=bugtraq&m=120361015026386&w=2
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://www.securitytracker.com/id?1019375
Third Party Advisory, VDB Entry vdb-entry signature x_refsource_oval
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5407
US Government Resource third-party-advisory x_refsource_cert
http://www.us-cert.gov/cas/techalerts/TA08-043C.html
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/27738
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/28909
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2008/0515/references

Scores

EPSS 0.3008
EPSS Percentile 98.0%

Details

CWE
CWE-399
Status published
Products (4)
microsoft/office 2000 sp3
microsoft/office 2003 sp2
microsoft/office 2004
microsoft/office xp sp3
Published Feb 13, 2008
Tracked Since Feb 18, 2026