CVE-2008-3021: Critical severity microsoft office converter pack vulnerability
Microsoft Office 2000 SP3, XP SP3, and 2003 SP2; Office Converter Pack; and Works 8 do not properly parse the length of a PICT file, which allows remote attackers to execute arbitrary code via a crafted PICT file with an invalid bitsperpixel field, aka the "PICT Filter Parsing Vulnerability," a different vulnerability than CVE-2008-3018.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2008-3021?
CVE-2008-3021 has a critical severity rating due to its potential for remote code execution.
How do I fix CVE-2008-3021?
To fix CVE-2008-3021, ensure that your Microsoft Office software is updated to the latest security patches provided by Microsoft.
Which software is affected by CVE-2008-3021?
CVE-2008-3021 affects Microsoft Office 2000 SP3, XP SP3, 2003 SP2, the Office Converter Pack, and Microsoft Works 8.
What type of vulnerability is CVE-2008-3021?
CVE-2008-3021 is a parsing vulnerability that exploits how PICT files are handled.
Can CVE-2008-3021 lead to data loss?
Yes, successful exploitation of CVE-2008-3021 could potentially lead to data loss or corruption in affected applications.