Unrated severityNVD Advisory· Published Nov 20, 2007· Updated Apr 23, 2026
CVE-2007-6026
CVE-2007-6026
Description
Stack-based buffer overflow in Microsoft msjet40.dll 4.0.8618.0 (aka Microsoft Jet Engine), as used by Access 2003 in Microsoft Office 2003 SP3, allows user-assisted attackers to execute arbitrary code via a crafted MDB file database file containing a column structure with a modified column count. NOTE: this might be the same issue as CVE-2005-0944.
Affected products
6- cpe:2.3:o:microsoft:windows_2000:*:*:*:*:*:*:*:*
- cpe:2.3:o:microsoft:windows_2003_server:*:*:*:*:*:*:*:*
- cpe:2.3:o:microsoft:windows_nt:4.0:*:*:*:*:*:*:*
- cpe:2.3:o:microsoft:windows_xp:*:sp2:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
18- www.kb.cert.org/vuls/id/936529nvdUS Government Resource
- www.us-cert.gov/cas/techalerts/TA08-134A.htmlnvdUS Government Resource
- dvlabs.tippingpoint.com/advisory/TPTI-08-04nvd
- lists.grok.org.uk/pipermail/full-disclosure/2007-November/058531.htmlnvd
- marc.infonvd
- ruder.cdut.net/blogview.aspnvd
- securityreason.com/securityalert/3376nvd
- www.securityfocus.com/archive/1/483797/100/0/threadednvd
- www.securityfocus.com/archive/1/483858/100/100/threadednvd
- www.securityfocus.com/archive/1/483887/100/100/threadednvd
- www.securityfocus.com/archive/1/483888/100/100/threadednvd
- www.securityfocus.com/archive/1/492019/100/0/threadednvd
- www.securityfocus.com/bid/26468nvd
- www.securityfocus.com/bid/28398nvd
- www.securitytracker.com/idnvd
- docs.microsoft.com/en-us/security-updates/securitybulletins/2008/ms08-028nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/38499nvd
- oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5578nvd
News mentions
0No linked articles in our index yet.