CVE-2014-1759
published 2014-04-08CVE-2014-1759: pubconv.dll in Microsoft Publisher 2003 SP3 and 2007 SP3 allows remote attackers to execute arbitrary code or cause a denial of service (incorrect pointer…
PriorityP345critical9.3CVSS 2.0
AVNACMAuNCCICAC
EPSS
14.25%
96.2th percentile
pubconv.dll in Microsoft Publisher 2003 SP3 and 2007 SP3 allows remote attackers to execute arbitrary code or cause a denial of service (incorrect pointer dereference and application crash) via a crafted .pub file, aka "Arbitrary Pointer Dereference Vulnerability."
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| microsoft | publisher | — | — |
| microsoft | publisher | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
VulDB
Microsoft Publisher 2003/2007 Publisher File pubconv.dll memory corruption (MS14-020 / Nessus ID 73417)
vuldb·2026-05-10·CVSS 9.3
CVE-2014-1759 [CRITICAL] Microsoft Publisher 2003/2007 Publisher File pubconv.dll memory corruption (MS14-020 / Nessus ID 73417)
A vulnerability classified as critical has been found in Microsoft Publisher 2003/2007. This vulnerability affects unknown code in the library pubconv.dll of the component Publisher File Handler. The manipulation leads to memory corruption.
This vulnerability is documented as CVE-2014-1759. The attack can be initiated remotely. There is not any exploit available.
To fix this issue, it is recommended to deploy a patch.
GHSA
GHSA-74m3-8jcv-5xvr: pubconv
ghsa_unreviewed·2022-05-14
CVE-2014-1759 [HIGH] GHSA-74m3-8jcv-5xvr: pubconv
pubconv.dll in Microsoft Publisher 2003 SP3 and 2007 SP3 allows remote attackers to execute arbitrary code or cause a denial of service (incorrect pointer dereference and application crash) via a crafted .pub file, aka "Arbitrary Pointer Dereference Vulnerability."
No detection rules found.
No public exploits indexed.
Talos
Microsoft Update Tuesday: April 2014, two final XP and Office 2003 fixes
blogs_talos·2014-04-08·CVSS 6.9
[MEDIUM] Microsoft Update Tuesday: April 2014, two final XP and Office 2003 fixes
## Microsoft Update Tuesday: April 2014, two final XP and Office 2003 fixes
It’s the last Microsoft Update Tuesday before the end-of-life of both Windows XP and Office 2003 and Microsoft is patching two vulnerabilities that also impact XP and two that also impact Office 2003 this month. All-in-all it’s a relatively light month this time around with only four bulletins covering eleven CVEs.
The first bulletin this month, MS14-017 , deals with Word and covers three CVEs. One fix is for a 0-day vulnerability, CVE-2014-1761, that Microsoft previously addressed in advisory 2953095 and a “Fix it” that disables support for RTF completely in Word. The vulnerability results from an incorrect “listoverridecount” value in an “overridetable” structure in the RTF file.This value is not properly check
Talos
Microsoft Update Tuesday: April 2014, two final XP and Office 2003 fixes
blogs_talos·2014-04-08·CVSS 6.9
CVE-2014-1761 [MEDIUM] Microsoft Update Tuesday: April 2014, two final XP and Office 2003 fixes
It’s the last Microsoft Update Tuesday before the end-of-life of both Windows XP and Office 2003 and Microsoft is patching two vulnerabilities that also impact XP and two that also impact Office 2003 this month. All-in-all it’s a relatively light month this time around with only four bulletins covering eleven CVEs.
The first bulletin this month, MS14-017, deals with Word and covers three CVEs. One fix is for a 0-day vulnerability, CVE-2014-1761, that Microsoft previously addressed in advisory 2953095 and a “Fix it” that disables support for RTF completely in Word. The vulnerability results from an incorrect “listoverridecount” value in an “overridetable” structure in the RTF file.This value is not properly checked by Word and setting it to an invalid value causes a type confusion bug, whi
2014-04-08
Published