MS.WordPerfect.Converter.Buffer.Overflow

description-logoDescription

This indicates an attack attempt against a buffer overflow vulnerability in Microsoft WordPerfect Converter in Microsoft Office.
The vulnerability is caused by an error when the vulnerable software handles an overly long length field. It allows a remote attacker to execute arbitrary code via a malicious document.

affected-products-logoAffected Products

Microsoft FrontPage 2000
Microsoft FrontPage 2002
Microsoft FrontPage 2003
Microsoft Office 2000
Microsoft Office 2003
Microsoft Office XP
Microsoft Publisher 2000
Microsoft Publisher 2002
Microsoft Publisher 2003
Microsoft Word 2000
Microsoft Word 2002
Microsoft Word 2003
Microsoft Works Suite 2001
Microsoft Works Suite 2002
Microsoft Works Suite 2003
Microsoft Works Suite 2004

Impact logoImpact

System compromise: execution of arbitrary code on the system.

recomended-action-logoRecommended Actions

Apply the patch supplied by the vendor:
http://www.microsoft.com/technet/security/bulletin/MS04-027.mspx.

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)