CVE-2009-0565

Microsoft Office - Buffer Overflow

Title source: llm

Description

Buffer overflow in Microsoft Office Word 2000 SP3, 2002 SP3, and 2007 SP1 and SP2; Microsoft Office for Mac 2004 and 2008; Open XML File Format Converter for Mac; and Microsoft Office Compatibility Pack for Word, Excel, and PowerPoint 2007 File Formats SP1 and SP2 allows remote attackers to execute arbitrary code via a Word document with a malformed record that triggers memory corruption, aka "Word Buffer Overflow Vulnerability."

Exploits (2)

exploitdb WORKING POC
by Andrew King · rubylocalwindows
https://www.exploit-db.com/exploits/17177
exploitdb WORKING POC
by anonymous · pythonlocalwindows
https://www.exploit-db.com/exploits/14693

Scores

EPSS 0.7869
EPSS Percentile 99.1%

Details

CWE
CWE-119
Status published
Products (10)
microsoft/office 2004
microsoft/office 2008
microsoft/office_compatibility_pack_for_word_excel_ppt_2007 (2 CPE variants)
microsoft/office_word 2000 sp3
microsoft/office_word 2002 sp3
microsoft/office_word 2003 sp3
microsoft/office_word 2007 sp1 (2 CPE variants)
microsoft/office_word_viewer
microsoft/office_word_viewer 2003 sp3
microsoft/open_xml_file_format_converter
Published Jun 10, 2009
Tracked Since Feb 18, 2026