Microsoft Office 2000, XP, 2003, 2004 for Mac, and v.X for Mac do not properly parse the length of a chart record, which allows remote user-assisted attackers to execute arbitrary code via a Word document with an embedded malformed chart record that triggers an overwrite of pointer values with values from the document, a different vulnerability than CVE-2006-3434, CVE-2006-3864, and CVE-2006-3868.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: microsoft

Published: 2006-10-10T22:00:00

Updated: 2024-08-07T18:39:53.922Z

Reserved: 2006-07-17T00:00:00

Link: CVE-2006-3650

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2006-10-10T22:07:00.000

Modified: 2024-11-21T00:14:06.080

Link: CVE-2006-3650

cve-icon Redhat

No data.