CVE-2009-3130: Buffer Overflow
Heap-based buffer overflow in Microsoft Office Excel 2002 SP3, Office 2004 and 2008 for Mac, and Open XML File Format Converter for Mac allows remote attackers to execute arbitrary code via a spreadsheet containing a malformed Binary File Format (aka BIFF) record that triggers memory corruption, aka "Excel Document Parsing Heap Overflow Vulnerability."
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2009-3130?
CVE-2009-3130 is classified as a critical vulnerability due to its potential for remote code execution.
How do I fix CVE-2009-3130?
To fix CVE-2009-3130, ensure that you apply the latest security updates released by Microsoft for the affected software.
Which versions of Microsoft Excel are affected by CVE-2009-3130?
CVE-2009-3130 affects Microsoft Excel 2002 SP3, 2003 SP3, 2007 SP1, 2007 SP2, and versions for Mac, including 2004 and 2008.
Can CVE-2009-3130 be exploited remotely?
Yes, CVE-2009-3130 can be exploited remotely if a user opens a specially crafted spreadsheet containing a malformed BIFF record.
What types of software are impacted by CVE-2009-3130?
CVE-2009-3130 impacts Microsoft Excel, the Microsoft Office Compatibility Pack, and the Open XML File Format Converter for Mac.