Microsoft Word for Windows 6.0 Converter (MSWRD632.WPC), as used in WordPad, does not properly validate certain data lengths, which allows remote attackers to execute arbitrary code via a .wri, .rtf, and .doc file sent by email or malicious web site, aka "Font Conversion Vulnerability," a different vulnerability than CVE-2004-0571.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2005-01-09 21:00
Updated : 2019-04-30 07:27
NVD link : CVE-2004-0901
Mitre link : CVE-2004-0901
JSON object : View
CWE
Products Affected
microsoft
- windows_2003_server
- windows_98se
- windows_nt
- windows_98
- windows_xp
- windows_2000
- windows_me