Security Advisory

CVE-2018-3933

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2018-07-11 16:00:00
Last updated 2024-09-17 01:26:20
Assigner talos
State PUBLISHED

Description

An exploitable out-of-bounds write exists in the Microsoft Word document conversion functionality of the Antenna House Office Server Document Converter version V6.1 Pro MR2 for Linux64 (6,1,2018,0312). A crafted Microsoft Word (DOC) document can lead to an out-of-bounds write, resulting in remote code execution. This vulnerability occurs in the `vbputanld` method.