CVE-2009-3130

CWE-119Buffer Overflow3 documents3 sources
Severity
9.3CRITICAL
EPSS
61.8%
top 1.66%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedNov 11
Latest updateMay 2

Description

Heap-based buffer overflow in Microsoft Office Excel 2002 SP3, Office 2004 and 2008 for Mac, and Open XML File Format Converter for Mac allows remote attackers to execute arbitrary code via a spreadsheet containing a malformed Binary File Format (aka BIFF) record that triggers memory corruption, aka "Excel Document Parsing Heap Overflow Vulnerability."

CVSS vector

AV:N/AC:M/C:C/I:C/A:CExploitability: 8.6 | Impact: 10.0

Affected Packages4 packages

🔴Vulnerability Details

2
GHSA
GHSA-5w95-m5g4-hrhx: Heap-based buffer overflow in Microsoft Office Excel 2002 SP3, Office 2004 and 2008 for Mac, and Open XML File Format Converter for Mac allows remote2022-05-02
CVEList
CVE-2009-3130: Heap-based buffer overflow in Microsoft Office Excel 2002 SP3, Office 2004 and 2008 for Mac, and Open XML File Format Converter for Mac allows remote2009-11-11
CVE-2009-3130 (CRITICAL CVSS 9.3) | Heap-based buffer overflow in Micro | cvebase.io