CVE Database
/

CVE-2004-0848

Back to search

CVE-2004-0848

Published: Feb 8, 2005

Modified: Aug 8, 2024

PUBLISHED

Description

Buffer overflow in Microsoft Office XP allows remote attackers to execute arbitrary code via a link with a URL file location containing long inputs after (1) "%00 (null byte) in .doc filenames or (2) "%0a" (carriage return) in .rtf filenames.

VendorProductVersions

n/a

n/a

affected
n/a

References

VU#416001
third-party-advisory
x_refsource_CERT-VN
MS05-005
vendor-advisory
x_refsource_MS
oval:org.mitre.oval:def:2738
vdb-entry
signature
x_refsource_OVAL
oval:org.mitre.oval:def:2348
vdb-entry
signature
x_refsource_OVAL
TA05-039A
third-party-advisory
x_refsource_CERT
oval:org.mitre.oval:def:4022
vdb-entry
signature
x_refsource_OVAL
ms-url-bo(19107)
vdb-entry
x_refsource_XF

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now