VYPR
Unrated severityNVD Advisory· Published Jul 10, 2006· Updated Jun 16, 2026

CVE-2006-3493

CVE-2006-3493

Description

Buffer overflow in LsCreateLine function (mso_203) in mso.dll and mso9.dll, as used by Microsoft Word and possibly other products in Microsoft Office 2003, 2002, and 2000, allows remote user-assisted attackers to cause a denial of service (crash) via a crafted Word DOC or other Office file type. NOTE: this issue was originally reported to allow code execution, but on 20060710 Microsoft stated that code execution is not possible, and the original researcher agrees.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

13
  • Microsoft/Office12 versions
    cpe:2.3:a:microsoft:office:2000:*:*:*:*:*:*:*+ 11 more
    • cpe:2.3:a:microsoft:office:2000:*:*:*:*:*:*:*
    • cpe:2.3:a:microsoft:office:2000:sp1:*:*:*:*:*:*
    • cpe:2.3:a:microsoft:office:2000:sp2:*:*:*:*:*:*
    • cpe:2.3:a:microsoft:office:2000:sp3:*:*:*:*:*:*
    • cpe:2.3:a:microsoft:office:2003:*:*:*:*:*:*:*
    • cpe:2.3:a:microsoft:office:2003:sp1:*:*:*:*:*:*
    • cpe:2.3:a:microsoft:office:2003:sp2:*:*:*:*:*:*
    • cpe:2.3:a:microsoft:office:2003:sp3:*:*:*:*:*:*
    • cpe:2.3:a:microsoft:office:xp:*:*:*:*:*:*:*
    • cpe:2.3:a:microsoft:office:xp:sp1:*:*:*:*:*:*
    • cpe:2.3:a:microsoft:office:xp:sp2:*:*:*:*:*:*
    • cpe:2.3:a:microsoft:office:xp:sp3:*:*:*:*:*:*
  • Microsoft/Wordllm-fuzzy

Patches

Vulnerability mechanics

References

10

News mentions

0

No linked articles in our index yet.