9.3
CVSSv2

CVE-2011-0097

Published: 13/04/2011 Updated: 12/10/2018
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 828
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Integer underflow in Microsoft Excel 2002 SP3, 2003 SP3, 2007 SP2, and 2010; Office 2004 and 2008 for Mac; Open XML File Format Converter for Mac; Excel Viewer SP2; and Office Compatibility Pack for Word, Excel, and PowerPoint 2007 File Formats SP2 allows remote malicious users to execute arbitrary code via a crafted 400h substream in an Excel file, which triggers a stack-based buffer overflow, aka "Excel Integer Overrun Vulnerability."

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft office 2004

microsoft office 2008

microsoft excel 2010

microsoft excel viewer -

microsoft open xml file format converter

microsoft office compatibility pack 2007

microsoft excel 2007

microsoft excel -

microsoft excel 2003

microsoft excel 2002

Vendor Advisories

Debian Bug report logs - #635548 CVE-2011-2716 udhcpc insufficient checking of DHCP options Package: udhcpc; Maintainer for udhcpc is Debian Install System Team <debian-boot@listsdebianorg>; Source for udhcpc is src:busybox (PTS, buildd, popcon) Reported by: Moritz Muehlenhoff <jmm@debianorg> Date: Tue, 26 Jul 201 ...