CVE Database
/

CVE-2006-2492

Back to search

CVE-2006-2492

Published: May 20, 2006

Modified: Oct 22, 2025

PUBLISHED

Description

Buffer overflow in Microsoft Word in Office 2000 SP3, Office XP SP3, Office 2003 Sp1 and SP2, and Microsoft Works Suites through 2006, allows user-assisted attackers to execute arbitrary code via a malformed object pointer, as originally reported by ISC on 20060519 for a zero-day attack.

VendorProductVersions

n/a

n/a

affected
n/a

References

MS06-027
vendor-advisory
x_refsource_MS
oval:org.mitre.oval:def:2068
vdb-entry
signature
x_refsource_OVAL
25635
vdb-entry
x_refsource_OSVDB
oval:org.mitre.oval:def:1738
vdb-entry
signature
x_refsource_OVAL
TA06-164A
third-party-advisory
x_refsource_CERT
ADV-2006-1872
vdb-entry
x_refsource_VUPEN
18037
vdb-entry
x_refsource_BID
20153
third-party-advisory
x_refsource_SECUNIA
word-code-execution(26556)
vdb-entry
x_refsource_XF
VU#446012
third-party-advisory
x_refsource_CERT-VN
1016130
vdb-entry
x_refsource_SECTRACK
oval:org.mitre.oval:def:1418
vdb-entry
signature
x_refsource_OVAL
TA06-139A
third-party-advisory
x_refsource_CERT

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now