Microsoft Office 2000 SP3, XP SP3, and 2003 SP2; Office Converter Pack; and Works 8 do not properly parse the length of a PICT file, which allows remote attackers to execute arbitrary code via a crafted PICT file with an invalid bits_per_pixel field, aka the PICT Filter Parsing Vulnerability, a different vulnerability than CVE-2008-3018.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Office | Microsoft | 2000-sp3 (including) | 2000-sp3 (including) |
Office | Microsoft | 2003-sp2 (including) | 2003-sp2 (including) |
Office | Microsoft | xp-sp3 (including) | xp-sp3 (including) |
Office_converter_pack | Microsoft | * | * |
Works | Microsoft | 8.0 (including) | 8.0 (including) |