CVE-2013-0086 — Improper Restriction of Operations within the Bounds of a Memory Buffer in Microsoft Sharepoint Foundation
Severity
5.0MEDIUMNVD
EPSS
34.2%
top 3.01%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedMar 13
Latest updateMay 5
Description
Microsoft OneNote 2010 SP1 does not properly determine buffer sizes during memory allocation, which allows remote attackers to obtain sensitive information via a crafted OneNote file, aka "Buffer Size Validation Vulnerability."
CVSS vector
AV:N/AC:L/C:P/I:N/A:NExploitability: 10.0 | Impact: 2.9
Affected Packages2 packages
🔴Vulnerability Details
2GHSA▶
GHSA-wq8h-rhq6-9hxx: Microsoft OneNote 2010 SP1 does not properly determine buffer sizes during memory allocation, which allows remote attackers to obtain sensitive inform↗2022-05-05
CVEList▶
CVE-2013-0086: Microsoft OneNote 2010 SP1 does not properly determine buffer sizes during memory allocation, which allows remote attackers to obtain sensitive inform↗2013-03-13