CVE-2007-1754
PUBCONV.DLL in Microsoft Office Publisher 2007 does not properly clear memory when transferring data from disk to memory, which allows user-assisted remote attackers to execute arbitrary code via a malformed .pub page via a certain negative value, which…
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 32.8%, higher than 98% of all known CVEs. Patch or mitigate before the next change window.
Description
PUBCONV.DLL in Microsoft Office Publisher 2007 does not properly clear memory when transferring data from disk to memory, which allows user-assisted remote attackers to execute arbitrary code via a malformed .pub page via a certain negative value, which bypasses a sanitization procedure that initializes critical pointers to NULL, aka the "Publisher Invalid Memory Reference Vulnerability".
- CVSS 2.0
- 9.3 HIGHAV:N/AC:M/Au:N/C:C/I:C/A:C
- EPSS
- 32.78% probability · 98th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-399
- Affected
- microsoft/publisher
- Source
- secure@microsoft.com
References
- http://archive.cert.uni-stuttgart.de/bugtraq/2007/07/msg00254.html
- http://osvdb.org/35953
- http://research.eeye.com/html/advisories/published/AD20070710.html
- http://secunia.com/advisories/25988Vendor Advisory
- http://www.securityfocus.com/archive/1/473309/100/0/threaded
- http://www.securitytracker.com/id?1018353
- http://www.us-cert.gov/cas/techalerts/TA07-191A.htmlUS Government Resource
- http://www.vupen.com/english/advisories/2007/2479Vendor Advisory
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2007/ms07-037
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1871
- http://archive.cert.uni-stuttgart.de/bugtraq/2007/07/msg00254.html
- http://osvdb.org/35953
- http://research.eeye.com/html/advisories/published/AD20070710.html
- http://secunia.com/advisories/25988Vendor Advisory
- http://www.securityfocus.com/archive/1/473309/100/0/threaded
- http://www.securitytracker.com/id?1018353
- http://www.us-cert.gov/cas/techalerts/TA07-191A.htmlUS Government Resource
- http://www.vupen.com/english/advisories/2007/2479Vendor Advisory
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2007/ms07-037
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1871
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.