Trend Micro Security

Microsoft Publisher Font Parsing Buffer Overflow

  危険度: :
  CVE識別番号: CVE-2006-0001,MS06-054

  概要

Stack-based buffer overflow in Microsoft Publisher 2000 through 2003 allows user-assisted remote attackers to execute arbitrary code via a crafted PUB file, which causes an overflow when parsing fonts.

  トレンドマイクロの対策

  • 1001232 - Microsoft Publisher Font Parsing Buffer Overflow.
  • 1001232 - Microsoft Publisher Font Parsing Buffer Overflow.

  対応方法

  Trend Micro Deep Security DPI Rule Number: 1000764
  Trend Micro Deep Security DPI Rule Name: 1000764 - Microsoft Publisher Font Parsing Buffer Overflow

  影響を受けるソフトウェア

  • Microsoft Office 2000 SP3
  • Microsoft Office 2003 SP1
  • Microsoft Office 2003 SP2
  • Microsoft Office XP SP3
  • Microsoft Publisher 2000
  • Microsoft Publisher 2002
  • Microsoft Publisher 2003