CVE Database
/

CVE-2006-3448

Back to search

CVE-2006-3448

Published: Feb 13, 2007

Modified: Aug 7, 2024

PUBLISHED

Description

Buffer overflow in the Step-by-Step Interactive Training in Microsoft Windows 2000 SP4, XP SP2 and Professional, and Server 2003 SP1 allows remote attackers to execute arbitrary code via a long Syllabus string in crafted bookmark link files (cbo, cbl, or .cbm), a different issue than CVE-2005-1212.

VendorProductVersions

n/a

n/a

affected
n/a

References

ADV-2007-0574
vdb-entry
x_refsource_VUPEN
MS07-005
vendor-advisory
x_refsource_MS
24121
third-party-advisory
x_refsource_SECUNIA
ms-stepbystep-bookmark-bo(30596)
vdb-entry
x_refsource_XF
VU#466873
third-party-advisory
x_refsource_CERT-VN
oval:org.mitre.oval:def:162
vdb-entry
signature
x_refsource_OVAL
20070213 MS Interactive Training .cbo Overflow
mailing-list
x_refsource_BUGTRAQ
TA07-044A
third-party-advisory
x_refsource_CERT
22484
vdb-entry
x_refsource_BID
1017632
vdb-entry
x_refsource_SECTRACK
31883
vdb-entry
x_refsource_OSVDB

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now