Executive Summary
Informations | |||
---|---|---|---|
Name | CVE-2010-2569 | First vendor Publication | 2010-12-16 |
Vendor | Cve | Last vendor Modification | 2024-11-21 |
Security-Database Scoring CVSS v3
Cvss vector : N/A | |||
---|---|---|---|
Overall CVSS Score | NA | ||
Base Score | NA | Environmental Score | NA |
impact SubScore | NA | Temporal Score | NA |
Exploitabality Sub Score | NA | ||
Calculate full CVSS 3.0 Vectors scores |
Security-Database Scoring CVSS v2
Cvss vector : (AV:N/AC:M/Au:N/C:C/I:C/A:C) | |||
---|---|---|---|
Cvss Base Score | 9.3 | Attack Range | Network |
Cvss Impact Score | 10 | Attack Complexity | Medium |
Cvss Expoit Score | 8.6 | Authentication | None Required |
Calculate full CVSS 2.0 Vectors scores |
Detail
pubconv.dll (aka the Publisher Converter DLL) in Microsoft Publisher 2002 SP3, 2003 SP3, and 2007 SP2 does not properly handle an unspecified size field in certain older file formats, which allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via a crafted Publisher file, aka "Size Value Heap Corruption in pubconv.dll Vulnerability." |
Original Source
Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2569 |
CWE : Common Weakness Enumeration
% | Id | Name |
---|---|---|
100 % | CWE-94 | Failure to Control Generation of Code ('Code Injection') |
OVAL Definitions
Definition Id: oval:org.mitre.oval:def:11555 | |||
Oval ID: | oval:org.mitre.oval:def:11555 | ||
Title: | Size Value Heap Corruption in pubconv.dll Vulnerability | ||
Description: | pubconv.dll (aka the Publisher Converter DLL) in Microsoft Publisher 2002 SP3, 2003 SP3, and 2007 SP2 does not properly handle an unspecified size field in certain older file formats, which allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via a crafted Publisher file, aka "Size Value Heap Corruption in pubconv.dll Vulnerability." | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2010-2569 | Version: | 10 |
Platform(s): | Microsoft Windows 2000 Microsoft Windows XP Microsoft Windows Server 2003 Microsoft Windows Vista Microsoft Windows 7 Microsoft Windows Server 2008 | Product(s): | Microsoft Office Publisher 2002 Microsoft Office Publisher 2003 Microsoft Office Publisher 2007 |
Definition Synopsis: | |||
|
CPE : Common Platform Enumeration
Type | Description | Count |
---|---|---|
Application | 3 |
OpenVAS Exploits
Date | Description |
---|---|
2010-12-15 | Name : Microsoft Publisher Remote Code Execution Vulnerability (2292970) File : nvt/secpod_ms10-103.nasl |
Open Source Vulnerability Database (OSVDB)
Id | Description |
---|---|
69811 | Microsoft Office Publisher pubconv.dll Size Value Handling Heap Corruption A memory corruption flaw exists in Microsoft Office Publisher. The Publisher Converter (pubconv.dll) fails to sanitize user-supplied input when parsing files, resulting in memory corruption. With a specially crafted Publisher file a context-dependent attacker can execute arbitrary code. |
Information Assurance Vulnerability Management (IAVM)
Date | Description |
---|---|
2010-12-16 | IAVM : 2010-A-0171 - Microsoft Office Publisher Remote Code Execution Vulnerability Severity : Category II - VMSKEY : V0025844 |
Snort® IPS/IDS
Date | Description |
---|---|
2016-04-05 | Microsoft Office Publisher tyo.oty field heap overflow attempt RuleID : 37921 - Revision : 1 - Type : FILE-OFFICE |
2016-04-05 | Microsoft Office Publisher pubconv.dll corruption attempt RuleID : 37920 - Revision : 1 - Type : FILE-OFFICE |
2014-01-10 | Microsoft Office Publisher pubconv.dll corruption attempt RuleID : 19306 - Revision : 14 - Type : FILE-OFFICE |
2014-01-10 | Microsoft Office Publisher oversized oti length attempt RuleID : 18231 - Revision : 13 - Type : FILE-OFFICE |
2014-01-10 | Microsoft Office Publisher memory corruption attempt RuleID : 18230 - Revision : 14 - Type : FILE-OFFICE |
2014-01-10 | Microsoft Office Publisher 97 conversion remote code execution attempt RuleID : 18214 - Revision : 15 - Type : FILE-OFFICE |
2014-01-10 | Microsoft Office Publisher column and row remote code execution attempt RuleID : 18213 - Revision : 10 - Type : FILE-OFFICE |
2014-01-10 | Microsoft Office Publisher tyo.oty field heap overflow attempt RuleID : 18212 - Revision : 18 - Type : FILE-OFFICE |
Nessus® Vulnerability Scanner
Date | Description |
---|---|
2010-12-15 | Name : The version of Microsoft Office installed on the remote host has multiple mem... File : smb_nt_ms10-103.nasl - Type : ACT_GATHER_INFO |
Sources (Detail)
Alert History
Date | Informations |
---|---|
2024-11-28 23:06:42 |
|
2024-11-28 12:22:20 |
|
2021-05-04 12:11:47 |
|
2021-04-22 01:12:22 |
|
2020-05-23 00:26:04 |
|
2018-10-13 00:22:58 |
|
2017-09-19 09:23:50 |
|
2016-04-26 19:56:21 |
|
2014-02-17 10:56:17 |
|
2014-01-19 21:26:56 |
|
2013-11-11 12:38:49 |
|
2013-05-10 23:28:28 |
|