Microsoft Word for Windows 6.0 Converter (MSWRD632.WPC), as used in WordPad, does not properly validate certain data lengths, which allows remote attackers to execute arbitrary code via a .wri, .rtf, and .doc file sent by email or malicious web site, aka "Font Conversion Vulnerability," a different vulnerability than CVE-2004-0571.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2004-12-15T05:00:00
Updated: 2024-08-08T00:31:47.797Z
Reserved: 2004-09-22T00:00:00
Link: CVE-2004-0901
Vulnrichment
No data.
NVD
Status : Modified
Published: 2005-01-10T05:00:00.000
Modified: 2019-04-30T14:27:13.913
Link: CVE-2004-0901
Redhat
No data.