CVE-2013-1318: Input Validation
Published May 15, 2013
·Updated
Microsoft Publisher 2003 SP3 allows remote attackers to execute arbitrary code via a crafted Publisher file that triggers access to an invalid pointer, aka "Publisher Corrupt Interface Pointer Vulnerability."
Affected Software
1 affected component
Microsoft Publisher=2003-sp3
Event History
May 15, 2013
CVE Published
via MITRE·01:00 AM
Data Sourced
via MITRE·01:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2013-1318?
CVE-2013-1318 is rated as critical because it allows remote attackers to execute arbitrary code.
2
How do I fix CVE-2013-1318?
To fix CVE-2013-1318, users should update Microsoft Publisher 2003 to the latest security patch provided by Microsoft.
3
What versions of Microsoft Publisher are affected by CVE-2013-1318?
CVE-2013-1318 specifically affects Microsoft Publisher 2003 Service Pack 3.
4
What types of attacks are associated with CVE-2013-1318?
CVE-2013-1318 can be exploited through crafted Publisher files that lead to arbitrary code execution.
5
Can CVE-2013-1318 affect my system without user interaction?
Yes, CVE-2013-1318 can affect a system if a user opens a malicious Publisher file.