VYPR
Unrated severityNVD Advisory· Published Jul 13, 2006· Updated Apr 16, 2026

CVE-2006-1304

CVE-2006-1304

Description

Buffer overflow in Microsoft Excel 2000 through 2003 allows user-assisted attackers to execute arbitrary code via a .xls file with a crafted COLINFO record, which triggers the overflow during a "data filling operation."

Affected products

12
  • Microsoft/Excel11 versions
    cpe:2.3:a:microsoft:excel:2000:*:*:*:*:*:*:*+ 10 more
    • cpe:2.3:a:microsoft:excel:2000:*:*:*:*:*:*:*
    • cpe:2.3:a:microsoft:excel:2000:sp2:*:*:*:*:*:*
    • cpe:2.3:a:microsoft:excel:2000:sp3:*:*:*:*:*:*
    • cpe:2.3:a:microsoft:excel:2000:sr1:*:*:*:*:*:*
    • cpe:2.3:a:microsoft:excel:2002:*:*:*:*:*:*:*
    • cpe:2.3:a:microsoft:excel:2002:sp1:*:*:*:*:*:*
    • cpe:2.3:a:microsoft:excel:2002:sp2:*:*:*:*:*:*
    • cpe:2.3:a:microsoft:excel:2002:sp3:*:*:*:*:*:*
    • cpe:2.3:a:microsoft:excel:2003:*:*:*:*:*:*:*
    • cpe:2.3:a:microsoft:excel:2003:sp1:*:*:*:*:*:*
    • cpe:2.3:a:microsoft:excel:x:*:mac_os_x:*:*:*:*:*
  • cpe:2.3:a:microsoft:excel_viewer:2003:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

7

News mentions

0

No linked articles in our index yet.