Executive Summary
Informations | |||
---|---|---|---|
Name | CVE-2011-0978 | First vendor Publication | 2011-02-10 |
Vendor | Cve | Last vendor Modification | 2024-11-21 |
Security-Database Scoring CVSS v3
Cvss vector : N/A | |||
---|---|---|---|
Overall CVSS Score | NA | ||
Base Score | NA | Environmental Score | NA |
impact SubScore | NA | Temporal Score | NA |
Exploitabality Sub Score | NA | ||
Calculate full CVSS 3.0 Vectors scores |
Security-Database Scoring CVSS v2
Cvss vector : (AV:N/AC:M/Au:N/C:C/I:C/A:C) | |||
---|---|---|---|
Cvss Base Score | 9.3 | Attack Range | Network |
Cvss Impact Score | 10 | Attack Complexity | Medium |
Cvss Expoit Score | 8.6 | Authentication | None Required |
Calculate full CVSS 2.0 Vectors scores |
Detail
Stack-based buffer overflow in Microsoft Excel 2002 SP3, 2003 SP3, and 2007 SP2; Office 2004 for Mac; Excel Viewer SP2; and Office Compatibility Pack for Word, Excel, and PowerPoint 2007 File Formats SP2 allows remote attackers to execute arbitrary code via vectors related to an axis properties record, and improper incrementing of an array index, aka "Excel Array Indexing Vulnerability." |
Original Source
Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-0978 |
CWE : Common Weakness Enumeration
% | Id | Name |
---|---|---|
100 % | CWE-119 | Failure to Constrain Operations within the Bounds of a Memory Buffer |
OVAL Definitions
Definition Id: oval:org.mitre.oval:def:12439 | |||
Oval ID: | oval:org.mitre.oval:def:12439 | ||
Title: | Excel Array Indexing Vulnerability | ||
Description: | Stack-based buffer overflow in Microsoft Excel 2002 SP3, 2003 SP3, and 2007 SP2; Office 2004 for Mac; Excel Viewer SP2; and Office Compatibility Pack for Word, Excel, and PowerPoint 2007 File Formats SP2 allows remote attackers to execute arbitrary code via vectors related to an axis properties record, and improper incrementing of an array index, aka "Excel Array Indexing Vulnerability." | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2011-0978 | Version: | 11 |
Platform(s): | Microsoft Windows 2000 Microsoft Windows XP Microsoft Windows Server 2003 Microsoft Windows Vista Microsoft Windows Server 2008 Microsoft Windows 7 | Product(s): | Microsoft Excel 2002 Microsoft Excel 2003 Microsoft Office Excel Viewer Microsoft Office Compatibility Pack |
Definition Synopsis: | |||
|
CPE : Common Platform Enumeration
Type | Description | Count |
---|---|---|
Application | 3 | |
Application | 1 | |
Application | 1 | |
Application | 1 |
ExploitDB Exploits
id | Description |
---|---|
2011-11-05 | MS11-021 Microsoft Office 2007 Excel .xlb Buffer Overflow |
2011-11-02 | Microsoft Excel 2007 SP2 Buffer Overwrite Exploit |
2011-04-29 | Microsoft Office Excel Axis Properties Record Parsing Buffer Overflow PoC |
OpenVAS Exploits
Date | Description |
---|---|
2012-03-06 | Name : Microsoft SMB Transaction Parsing Remote Code Execution Vulnerability File : nvt/secpod_ms11-020_remote.nasl |
2011-04-13 | Name : Microsoft Office Excel Remote Code Execution Vulnerabilities (2489279) File : nvt/secpod_ms11-021.nasl |
2011-02-23 | Name : Microsoft Office Excel 2003 Invalid Object Type Remote Code Execution Vulnera... File : nvt/gb_ms_office_excel_art_object_code_exec_vuln.nasl |
2011-02-23 | Name : Microsoft Office Excel Axis and Art Object Parsing Remote Code Execution Vuln... File : nvt/gb_ms_office_excel_mult_code_exec_vuln.nasl |
2011-02-23 | Name : Microsoft PowerPoint 2007 OfficeArt Atom Remote Code Execution Vulnerability File : nvt/gb_ms_power_point_code_exec_vuln.nasl |
Open Source Vulnerability Database (OSVDB)
Id | Description |
---|---|
71762 | Microsoft Excel Axis Properties Record Parsing Overflow Microsoft Excel is prone to an overflow condition. The program fails to properly sanitize user-supplied input, specifically a specific field used in array index incrementing, resulting in a stack-based buffer overflow. With a specially crafted axis properties record in an Excel file, a context-dependent attacker can potentially execute arbitrary code. |
Snort® IPS/IDS
Date | Description |
---|---|
2014-01-10 | Microsoft Office Excel url unicode overflow attempt RuleID : 7002 - Revision : 20 - Type : FILE-OFFICE |
2015-01-31 | Microsoft Office Excel malformed Label record exploit attempt RuleID : 32940 - Revision : 4 - Type : FILE-OFFICE |
2015-01-06 | Microsoft Office Excel DV record buffer overflow attempt RuleID : 32625 - Revision : 3 - Type : FILE-OFFICE |
2014-07-03 | Microsoft Office Excel rtToolbarDef record integer overflow attempt RuleID : 31127 - Revision : 3 - Type : FILE-OFFICE |
2014-07-03 | Microsoft Office Excel rtToolbarDef record integer overflow attempt RuleID : 31126 - Revision : 3 - Type : FILE-OFFICE |
2014-07-03 | Microsoft Office Excel rtToolbarDef record integer overflow attempt RuleID : 31125 - Revision : 3 - Type : FILE-OFFICE |
2014-01-10 | Microsoft Office Excel rtToolbarDef record integer overflow attempt RuleID : 28550 - Revision : 4 - Type : FILE-OFFICE |
2014-01-10 | Microsoft Office Excel rtToolbarDef record integer overflow attempt RuleID : 28549 - Revision : 4 - Type : FILE-OFFICE |
2014-01-10 | Microsoft Office Excel RealTimeData record memory corruption attempt RuleID : 28546 - Revision : 4 - Type : FILE-OFFICE |
2014-01-10 | Microsoft Office Excel RealTimeData record memory corruption attempt RuleID : 28545 - Revision : 3 - Type : FILE-OFFICE |
2014-01-10 | Microsoft Office Excel RealTimeData record memory corruption attempt RuleID : 28544 - Revision : 3 - Type : FILE-OFFICE |
2014-01-10 | Microsoft Office Excel Workspace file FontCount record memory corruption attempt RuleID : 28103 - Revision : 4 - Type : FILE-OFFICE |
2014-01-10 | Microsoft Office Excel IPMT record buffer overflow attempt RuleID : 25296 - Revision : 4 - Type : FILE-OFFICE |
2014-01-10 | Microsoft Office Excel IPMT record buffer overflow attempt RuleID : 25295 - Revision : 3 - Type : FILE-OFFICE |
2014-01-10 | Microsoft Office Excel IPMT record buffer overflow attempt RuleID : 25294 - Revision : 4 - Type : FILE-OFFICE |
2014-01-10 | Microsoft Office Excel IPMT record buffer overflow attempt RuleID : 25293 - Revision : 6 - Type : FILE-OFFICE |
2014-01-10 | Microsoft Office Excel catLabel pointer manipulation attempt RuleID : 24130 - Revision : 5 - Type : FILE-OFFICE |
2014-01-10 | Microsoft Office Excel catLabel pointer manipulation attempt RuleID : 24129 - Revision : 6 - Type : FILE-OFFICE |
2014-01-10 | Microsoft Office Excel rtToolbarDef record integer overflow attempt RuleID : 20534 - Revision : 12 - Type : FILE-OFFICE |
2014-01-10 | Microsoft Office Excel DV record buffer overflow attempt RuleID : 18676 - Revision : 11 - Type : FILE-OFFICE |
2014-01-10 | Microsoft Office Excel OBJ record invalid cmo.ot exploit attempt RuleID : 18641 - Revision : 7 - Type : FILE-OFFICE |
2014-01-10 | Microsoft Office Excel malformed SupBook record attempt RuleID : 18640 - Revision : 8 - Type : FILE-OFFICE |
2014-01-10 | Microsoft Office Excel CatSerRange record exploit attempt RuleID : 18639 - Revision : 12 - Type : FILE-OFFICE |
2014-01-10 | Microsoft Office Excel Workspace file FontCount record memory corruption attempt RuleID : 18634 - Revision : 15 - Type : FILE-OFFICE |
2014-01-10 | Microsoft Office Excel RealTimeData record memory corruption attempt RuleID : 18633 - Revision : 14 - Type : FILE-OFFICE |
2014-01-10 | Microsoft Office Excel malformed Label record exploit attempt RuleID : 18632 - Revision : 19 - Type : FILE-OFFICE |
2014-01-10 | Microsoft Office Excel rtToolbarDef record integer overflow attempt RuleID : 18631 - Revision : 11 - Type : FILE-OFFICE |
2014-01-10 | Microsoft Office Excel rtToolbarDef record integer overflow attempt RuleID : 18630 - Revision : 11 - Type : FILE-OFFICE |
Nessus® Vulnerability Scanner
Date | Description |
---|---|
2011-04-13 | Name : An application installed on the remote Mac OS X host is affected by multiple ... File : macosx_ms_office_apr2011.nasl - Type : ACT_GATHER_INFO |
2011-04-13 | Name : Arbitrary code can be executed on the remote host through Microsoft Excel. File : smb_nt_ms11-021.nasl - Type : ACT_GATHER_INFO |
Sources (Detail)
Alert History
Date | Informations |
---|---|
2024-11-28 23:06:05 |
|
2024-11-28 12:25:00 |
|
2021-05-04 12:14:07 |
|
2021-04-22 01:15:18 |
|
2020-05-23 00:27:54 |
|
2018-10-13 00:23:03 |
|
2017-09-19 09:24:15 |
|
2016-04-26 20:35:33 |
|
2014-02-17 11:00:48 |
|
2014-01-19 21:27:37 |
|
2013-05-10 22:55:46 |
|
2013-01-15 17:19:47 |
|