First published: Wed Mar 13 2013(Updated: )
Microsoft OneNote 2010 SP1 does not properly determine buffer sizes during memory allocation, which allows remote attackers to obtain sensitive information via a crafted OneNote file, aka "Buffer Size Validation Vulnerability."
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft SharePoint Foundation 2013 | =2010-sp1 | |
Microsoft SharePoint Server 2010 | =2010-sp1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2013-0086 is rated as important due to its potential for information disclosure.
To address CVE-2013-0086, users should apply the latest security updates provided by Microsoft.
CVE-2013-0086 affects Microsoft SharePoint Foundation 2010 SP1 and Microsoft SharePoint Server 2010 SP1.
CVE-2013-0086 allows remote attackers to obtain sensitive information through a specially crafted OneNote file.
CVE-2013-0086 involves improper buffer size validation during memory allocation, leading to potential information disclosure.