CVE-2006-1316: Code Injection
Unspecified vulnerability in Microsoft Office 2003 SP1 and SP2, Office XP SP3, Office 2000 SP3, and other products, allows user-assisted attackers to execute arbitrary code via an Office file with malformed string that triggers memory corruption related to record lengths, aka "Microsoft Office Parsing Vulnerability," a different vulnerability than CVE-2006-2389.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2006-1316?
CVE-2006-1316 has a critical severity rating due to its potential for arbitrary code execution.
How do I fix CVE-2006-1316?
To fix CVE-2006-1316, users should apply the latest security updates provided by Microsoft for affected Office versions.
What software is affected by CVE-2006-1316?
CVE-2006-1316 affects Microsoft Office 2003 SP1, SP2, Office XP SP3, and Office 2000 SP3.
What type of attacks are possible with CVE-2006-1316?
CVE-2006-1316 allows user-assisted attackers to execute arbitrary code by exploiting malformed Office files.
When was CVE-2006-1316 disclosed?
CVE-2006-1316 was disclosed in April 2006.