CVE detail
CVE-2009-0563
Stack-based buffer overflow in Microsoft Office Word 2002 SP3, 2003 SP3, and 2007 SP1 and SP2; Microsoft Office for Mac 2004 and 2008; Open XML File Format Converter for Mac; Microsoft Office Word Viewer 2003 SP3; Microsoft Office Word Viewer; and Microsoft Office Compatibility Pack for Word, Excel, and PowerPoint 2007 File Formats SP1 and SP2 allows remote attackers to execute arbitrary code via a Word document with a crafted tag containing an invalid length field, aka "Word Buffer Overflow Vulnerability."
Buzz score
Why this CVE is surfacing
This all-time snapshot uses the same composite formula as Trending across a 30-year evidence window, rather than a current rolling window.
Buzz score components · mention 16.1 · diversity 8.0 · KEV 25.0 · OTX 0.0 · PoC 0.0
Why it matters now
Mention timeline
- Total mentions
- 0
- within the 30d window
- Peak daily
- 0
- highest bucket
Evidence
Source links by recency
4 source links · newest first
- Uyghur Mac users targeted with spear-phishing emailsHelp Net Security
Uyghur activists are, once again, targeted with spear-phishing emails whose goal is to set up a backdoor on the victims’ computers. The Uyghurs are a Turkic ethnic group, most of which live in the Xinjiang Uyghur Autonomous Region in the People’s Republic of China. This time around only Mac users are targeted, with emails delivering booby-trapped .doc files that purportedly contain text regarding the Uyghur people and their political struggle: Concerns over Uyghur People.doc, 2013-02-04 … More →
newswww.helpnetsecurity.comFeb 15, 2013, 9:40 AM Researchers have observed a recent spike in attacks against the Uyghur community to monitor their email and chat activities, according AlienVault and Kaspersky Lab.
newswww.securityweek.comFeb 14, 2013, 11:29 AMTwo security vendors have detected an uptick in targeted malicious software attacks against the Uyghur community, an ethnic group in western China that has long campaigned for greater independence from Beijing. The attacks have been engineered to target Uyghur supporters using Apple’s Mac OS X operating system. Costin Raiu, director of Kaspersky Lab’s global research […]
newswww.csoonline.comFeb 13, 2013, 3:00 PMThere are two variants of the Sabpab Trojan targeting Macs, according to security specialists. We reported earlier this week that Sabpab was targeting Macs using the same Java vulnerability that was used by the Flashback Trojan. Now the recently discovered Sabpab Trojan malware, is said to be targeting Macs using compromised Word documents, with the […]
newswww.csoonline.comApr 18, 2012, 3:00 PM
Exploit code
Public exploit repository references
Public PoC repositories are third-party, potentially unsafe artifacts. Treat their code as untrusted and use it only on authorized systems in an isolated, least-privilege environment. cvebuzz does not execute the code or verify that an exploit works.
0 repository references · best confidence N/A · max 0 stars
Related records
Similar CVEs
6 related CVEs with shared weakness or product evidence
- CVE-2018-0922CVSS 7.8 · High
Microsoft Office 2010 SP2, 2013 SP1, and 2016, Microsoft Office 2016 Click-to-Run Microsoft Office 2016 for Mac, Microsoft Office Compatibility Pack SP2, Microsoft Office Web Apps…
- CVE-2012-1889CVSS 8.8 · High
Microsoft XML Core Services 3.0, 4.0, 5.0, and 6.0 accesses uninitialized memory locations, which allows remote attackers to execute arbitrary code or cause a denial of service (m…
- CVE-2008-3471CVSS 9.3 · Critical
Stack-based buffer overflow in Microsoft Excel 2000 SP3, 2002 SP3, 2003 SP2 and SP3, and 2007 Gold and SP1; Office Excel Viewer 2003 SP3; Office Excel Viewer; Office Compatibility…
- CVE-2010-1902CVSS 9.3 · Critical
Buffer overflow in Microsoft Office Word 2002 SP3, 2003 SP3, and 2007 SP2; Microsoft Office 2004 and 2008 for Mac; Open XML File Format Converter for Mac; Office Word Viewer; and…
- CVE-2010-1901CVSS 9.3 · Critical
Microsoft Office Word 2002 SP3, 2003 SP3, and 2007 SP2; Microsoft Office 2004 and 2008 for Mac; Open XML File Format Converter for Mac; Office Word Viewer; and Office Compatibilit…
- CVE-2010-1900CVSS 9.3 · Critical
Microsoft Office Word 2002 SP3, 2003 SP3, and 2007 SP2; Microsoft Office 2004 and 2008 for Mac; Open XML File Format Converter for Mac; Office Word Viewer; Office Compatibility Pa…