vendor:
Office 2010
by:
Snake (Shahriyar.j)
7,5
CVSS
HIGH
Stack Overflow
119
CWE
Product Name: Office 2010
Affected Version From: MS Office <= 2010
Affected Version To: MS Office <= 2010
Patch Exists: Yes
Related CWE: CVE-2010-3333
CPE: a:microsoft:office:2010
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows 7
2011
MS Office 2010 RTF Header Stack Overflow Vulnerability
This is an exploit for MS Office 2010 RTF Header Stack Overflow Vulnerability. It gracefully bypasses DEP/ASLR in MS Office 2010, and is named 'Ikazuchi DEP/ASRL Bypass'. The exploit involves a series of POP, MOV, CALL, and ADD instructions to create a RWX Heap, store the ESP address, and copy shellcode.
Mitigation:
Microsoft released a patch for this vulnerability in 2011.