
CVE-2006-1318
https://notcve.org/view.php?id=CVE-2006-1318
19 Sep 2014 — Microsoft Office 2003 SP1 and SP2, Office XP SP3, Office 2000 SP3, Office 2004 for Mac, and Office X for Mac do not properly parse record lengths, which allows remote attackers to execute arbitrary code via a malformed control in an Office document, aka "Microsoft Office Control Vulnerability." Microsoft Office 2003 SP1 y SP2, Office XP SP3, Office 2003 SP3, Office 2004 para Mac y Office X para Mac no analiza debidamente la longitud del registro, lo que permite a atacantes remotos ejecutar código arbitrario... • https://docs.microsoft.com/en-us/security-updates/securitybulletins/2006/ms06-038 • CWE-94: Improper Control of Generation of Code ('Code Injection') •

CVE-2011-0041 – GDI+ - 'gdiplus.dll' CreateDashedPath Integer Overflow
https://notcve.org/view.php?id=CVE-2011-0041
13 Apr 2011 — Integer overflow in gdiplus.dll in GDI+ in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP1 and SP2, Windows Server 2008 Gold and SP2, and Office XP SP3 allows remote attackers to execute arbitrary code via a crafted EMF image, aka "GDI+ Integer Overflow Vulnerability." Desbordamiento de enteros en gdiplus.dll en GDI+ en Microsoft Windows XP SP2 y SP3, Windows Server 2003 SP2, Windows Vista SP1 y SP2, Windows Server 2008 Gold y SP2, y Office XP SP3 permite a atacantes remotos eje... • https://www.exploit-db.com/exploits/17544 • CWE-189: Numeric Errors •

CVE-2011-0107
https://notcve.org/view.php?id=CVE-2011-0107
13 Apr 2011 — Untrusted search path vulnerability in Microsoft Office XP SP3, Office 2003 SP3, and Office 2007 SP2 allows local users to gain privileges via a Trojan horse DLL in the current working directory, as demonstrated by a directory that contains a .docx file, aka "Office Component Insecure Library Loading Vulnerability." Vulnerabilidad de búsqueda de ruta no confiable en Microsoft Office XP SP3, Office 2003 SP3 y Office 2007 SP2 permite a usuarios locales conseguir privilegios a través de un troyano DLL en el di... • http://osvdb.org/71767 •

CVE-2010-3945
https://notcve.org/view.php?id=CVE-2010-3945
16 Dec 2010 — Buffer overflow in the CGM image converter in the graphics filters in Microsoft Office XP SP3, Office 2003 SP3, and Office Converter Pack allows remote attackers to execute arbitrary code via a crafted CGM image in an Office document, aka "CGM Image Converter Buffer Overrun Vulnerability." Desbordamiento del búfer en el convertidor de imágenes CGM de los filtros gráficos de Microsoft Office XP SP3, Office 2003 SP3, y Office Converter Pack permite a atacantes remotos ejecutar código de su elección mediante u... • http://www.securitytracker.com/id?1024887 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2010-3946
https://notcve.org/view.php?id=CVE-2010-3946
16 Dec 2010 — Integer overflow in the PICT image converter in the graphics filters in Microsoft Office XP SP3, Office 2003 SP3, and Office Converter Pack allows remote attackers to execute arbitrary code via a crafted PICT image in an Office document, aka "PICT Image Converter Integer Overflow Vulnerability." Desbordamiento de enteros en el convertidor de imágenes PICT en los filtros de gráficos en Microsoft Office XP SP3, Office 2003 SP3 y Office Converter Pack permite a atacantes remotos ejecutar código arbitrario a tr... • http://www.securitytracker.com/id?1024887 • CWE-189: Numeric Errors •

CVE-2010-3947
https://notcve.org/view.php?id=CVE-2010-3947
16 Dec 2010 — Heap-based buffer overflow in the TIFF image converter in the graphics filters in Microsoft Office XP SP3, Office Converter Pack, and Works 9 allows remote attackers to execute arbitrary code via a crafted TIFF image in an Office document, aka "TIFF Image Converter Heap Overflow Vulnerability." Desbordamiento de búfer basado en memoria dinámica (heap) en el convertidor de imágenes TIFF en Microsoft Office XP SP3, Office Converter Pack, y Works 9, permite a atacantes remotos ejecutar código de su elección a ... • http://www.securitytracker.com/id?1024887 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2010-3949
https://notcve.org/view.php?id=CVE-2010-3949
16 Dec 2010 — Buffer overflow in the TIFF image converter in the graphics filters in Microsoft Office XP SP3 and Office Converter Pack allows remote attackers to execute arbitrary code via a crafted TIFF image in an Office document, aka "TIFF Image Converter Buffer Overflow Vulnerability." Desbordamiento de búfer en el convertidor de imágenes TIFF en los filtros de gráficos en Microsoft Office XP SP3 y Office Converter Pack permite a atacantes remotos ejecutar código arbitrario a través de una imagen TIFF manipulada en u... • http://www.securitytracker.com/id?1024887 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2010-3950
https://notcve.org/view.php?id=CVE-2010-3950
16 Dec 2010 — The TIFF image converter in the graphics filters in Microsoft Office XP SP3, Office Converter Pack, and Works 9 does not properly convert data, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted TIFF image in an Office document, aka "TIFF Image Converter Memory Corruption Vulnerability." El convertidor de imágenes TIFF en los filtros gráficos de Microsoft Office XP SP3, Office Converter Pack, y Works 9 no convierte los datos adecuadamente, ... • http://www.securitytracker.com/id?1024887 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2010-3951
https://notcve.org/view.php?id=CVE-2010-3951
16 Dec 2010 — Buffer overflow in the FlashPix image converter in the graphics filters in Microsoft Office XP SP3 and Office Converter Pack allows remote attackers to execute arbitrary code via a crafted FlashPix image in an Office document, aka "FlashPix Image Converter Buffer Overflow Vulnerability." Desbordamiento de búfer en el convertidor de imágenes FlashPix en Microsoft Office XP SP3 y Office Converter Pack permite a atacantes remotos ejecutar código de su elección a través de una imagen FlashPix en un documento de... • http://www.securitytracker.com/id?1024887 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2010-3952
https://notcve.org/view.php?id=CVE-2010-3952
16 Dec 2010 — The FlashPix image converter in the graphics filters in Microsoft Office XP SP3 and Office Converter Pack allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via a crafted FlashPix image in an Office document, aka "FlashPix Image Converter Heap Corruption Vulnerability." El convertidor de imagen FlashPix en los filtros gráficos en Microsoft Office XP SP3 y Office Converter Pack permite a atacantes remotos ejecutar código de su elección o provocar una deneg... • http://www.securitytracker.com/id?1024887 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •