CVE-2008-3019: Critical severity microsoft office converter pack vulnerability
Microsoft Office 2000 SP3, XP SP3, and 2003 SP2; Office Converter Pack; and Works 8 do not properly parse the length of an Encapsulated PostScript (EPS) file, which allows remote attackers to execute arbitrary code via a crafted EPS file, aka the "Malformed EPS Filter Vulnerability."
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2008-3019?
CVE-2008-3019 is classified as a critical vulnerability due to the potential for remote code execution.
How do I fix CVE-2008-3019?
To fix CVE-2008-3019, users should update to the latest Microsoft Office or Office Converter Pack with security patches applied.
Which Microsoft software is affected by CVE-2008-3019?
CVE-2008-3019 affects Microsoft Office 2000 SP3, XP SP3, 2003 SP2, Office Converter Pack, and Microsoft Works 8.
What type of attack does CVE-2008-3019 enable?
CVE-2008-3019 enables remote attackers to execute arbitrary code through crafted EPS files.
Can CVE-2008-3019 be exploited without user interaction?
Yes, CVE-2008-3019 can be exploited through a malicious EPS file opened by an unsuspecting user, potentially leading to compromise.