Description
Microsoft Office 2000, XP, 2003, 2004 for Mac, and v.X for Mac do not properly parse the length of a chart record, which allows remote user-assisted attackers to execute arbitrary code via a Word document with an embedded malformed chart record that triggers an overwrite of pointer values with values from the document, a different vulnerability than CVE-2006-3434, CVE-2006-3864, and CVE-2006-3868.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
History
No history.
Status: PUBLISHED
Assigner: microsoft
Published:
Updated: 2024-08-07T18:39:53.922Z
Reserved: 2006-07-17T00:00:00.000Z
Link: CVE-2006-3650
No data.
Status : Modified
Published: 2006-10-10T22:07:00.000
Modified: 2026-04-23T00:35:47.467
Link: CVE-2006-3650
No data.
OpenCVE Enrichment
No data.
Weaknesses