CVE-2012-2539: Microsoft Word Remote Code Execution Vulnerability
Microsoft Word 2003 SP3, 2007 SP2 and SP3, and 2010 SP1; Word Viewer; Office Compatibility Pack SP2 and SP3; and Office Web Apps 2010 SP1 allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via crafted RTF data, aka "Word RTF 'listoverridecount' Remote Code Execution Vulnerability."
Other sources
Microsoft Word allows attackers to execute remote code or cause a denial-of-service (DoS) via crafted RTF data.
— CISA
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2012-2539?
CVE-2012-2539 has been classified as a critical vulnerability that allows remote code execution.
How do I fix CVE-2012-2539?
To fix CVE-2012-2539, users should apply the latest security updates from Microsoft for the affected versions of Microsoft Word and the Office Compatibility Pack.
What are the affected products for CVE-2012-2539?
CVE-2012-2539 affects Microsoft Word 2003 SP3, 2007 SP2 and SP3, 2010 SP1, Word Viewer, and Office Compatibility Pack SP2 and SP3.
Who is vulnerable to CVE-2012-2539?
Users of Microsoft Word and Office products listed in the CVE-2012-2539 advisory are vulnerable if they are using the affected versions without applying the necessary updates.
What kind of attack can exploit CVE-2012-2539?
CVE-2012-2539 can be exploited through crafted RTF data to execute arbitrary code or cause memory corruption, leading to denial of service.