CVE-2013-6801

Microsoft Word 2003 SP2 and SP3 - Denial of Service via Malformed Embedded Image

Title source: llm
STIX 2.1

Description

Microsoft Word 2003 SP2 and SP3 on Windows XP SP3 allows remote attackers to cause a denial of service (CPU consumption) via a malformed .doc file containing an embedded image, as demonstrated by word2003forkbomb.doc, related to a "fork bomb" issue.

References (3)

Core 3
Core References
Exploit mailing-list x_refsource_bugtraq
http://archives.neohapsis.com/archives/bugtraq/2013-11/0038.html
Third Party Advisory mailing-list x_refsource_bugtraq
http://archives.neohapsis.com/archives/bugtraq/2013-11/0045.html
Third Party Advisory mailing-list x_refsource_bugtraq
http://archives.neohapsis.com/archives/bugtraq/2013-11/0035.html

Scores

EPSS 0.1443
EPSS Percentile 96.3%

Details

CWE
CWE-399
Status published
Products (1)
microsoft/word 2003 sp2 (2 CPE variants)
Published Nov 18, 2013
Tracked Since Feb 18, 2026