Vulnerabilities > Microsoft > Office Converter Pack > Critical

DATE CVE VULNERABILITY TITLE RISK
2008-08-12 CVE-2008-3019 Resource Management Errors vulnerability in Microsoft Office, Office Converter Pack and Works
Microsoft Office 2000 SP3, XP SP3, and 2003 SP2; Office Converter Pack; and Works 8 do not properly parse the length of an Encapsulated PostScript (EPS) file, which allows remote attackers to execute arbitrary code via a crafted EPS file, aka the "Malformed EPS Filter Vulnerability."
network
microsoft CWE-399
critical
9.3
2008-08-12 CVE-2008-3020 Resource Management Errors vulnerability in Microsoft Office, Office Converter Pack and Works
Microsoft Office 2000 SP3 and XP SP3; Office Converter Pack; and Works 8 do not properly parse the length of a BMP file, which allows remote attackers to execute arbitrary code via a crafted BMP file, aka the "Malformed BMP Filter Vulnerability."
network
microsoft CWE-399
critical
9.3
2008-08-12 CVE-2008-3021 Resource Management Errors vulnerability in Microsoft Office, Office Converter Pack and Works
Microsoft Office 2000 SP3, XP SP3, and 2003 SP2; Office Converter Pack; and Works 8 do not properly parse the length of a PICT file, which allows remote attackers to execute arbitrary code via a crafted PICT file with an invalid bits_per_pixel field, aka the "PICT Filter Parsing Vulnerability," a different vulnerability than CVE-2008-3018.
network
microsoft CWE-399
critical
9.3
2008-08-12 CVE-2008-3460 Resource Management Errors vulnerability in Microsoft Office, Office Converter Pack and Works
WPGIMP32.FLT in Microsoft Office 2000 SP3, XP SP3, and 2003 SP2; Office Converter Pack; and Works 8 does not properly parse the length of a WordPerfect Graphics (WPG) file, which allows remote attackers to execute arbitrary code via a crafted WPG file, aka the "WPG Image File Heap Corruption Vulnerability."
network
microsoft CWE-399
critical
9.3