CVE-2010-3200: Null Pointer Dereference
Published Sep 20, 2010
·Updated
MSO.dll in Microsoft Word 2003 SP3 11.8326.11.8324 allows remote attackers to cause a denial of service (NULL pointer dereference and multiple-instance application crash) via a crafted buffer in a Word document, as demonstrated by wordcrash11.8326.8324poc.doc.
Affected Software
1 affected component
Microsoft Word=2003-sp3
Event History
Sep 20, 2010
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2010-3200?
CVE-2010-3200 is classified as a denial of service vulnerability.
2
How do I fix CVE-2010-3200?
To fix CVE-2010-3200, ensure that you apply the latest security update for Microsoft Word 2003.
3
What type of attack is associated with CVE-2010-3200?
CVE-2010-3200 is associated with a remote denial of service attack.
4
Which version of Microsoft Word is affected by CVE-2010-3200?
Microsoft Word 2003 SP3 is affected by CVE-2010-3200.
5
What happens when CVE-2010-3200 is exploited?
Exploitation of CVE-2010-3200 can lead to a crash of the Microsoft Word application due to a NULL pointer dereference.