VYPR
Unrated severityNVD Advisory· Published Aug 15, 2015· Updated May 6, 2026

CVE-2015-2470

CVE-2015-2470

Description

Integer underflow in Microsoft Office 2007 SP3, Office 2010 SP2, Office 2013 SP1, Office 2013 RT SP1, Office for Mac 2011, and Word Viewer allows remote attackers to execute arbitrary code via a crafted document, aka "Microsoft Office Integer Underflow Vulnerability."

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Integer underflow in Microsoft Office allows remote code execution via a crafted document, affecting multiple Office versions.

Vulnerability

CVE-2015-2470 is an integer underflow vulnerability in Microsoft Office 2007 SP3, Office 2010 SP2, Office 2013 SP1, Office 2013 RT SP1, Office for Mac 2011, and Word Viewer. The flaw exists in how Office handles integer bounds checking when processing specially crafted documents, leading to memory corruption [1]. The crash was reproduced in Office 2007 with the File Validation Add-In disabled and Application Verifier enabled [2].

Exploitation

An attacker can exploit this vulnerability by convincing a user to open a specially crafted Office document. No authentication or special network position is required; the attack vector is remote via email or web hosting. The crash observed in Office 2007 shows a read access violation at MSPTLS!LssbFIsSublineEmpty+0xa327 due to an integer underflow that corrupts memory [2].

Impact

Successful exploitation allows an attacker to execute arbitrary code in the context of the current user. If the user has administrative privileges, the attacker can gain full control of the system, including installing programs, viewing/changing/deleting data, or creating new accounts [1].

Mitigation

Microsoft released security update MS15-081 (KB3080790) on August 11, 2015, which addresses this vulnerability by correcting how Office handles integer bounds checking [1]. Users should apply the update via Windows Update or direct download. No workarounds are documented, and the vulnerability is not listed on the CISA Known Exploited Vulnerabilities (KEV) catalog.

AI Insight generated on May 23, 2026. Synthesized from this CVE's description and the cited reference URLs; citations are validated against the source bundle.

Affected products

8
  • Microsoft/Office4 versions
    cpe:2.3:a:microsoft:office:2010:sp2:*:*:*:*:x64:*+ 3 more
    • cpe:2.3:a:microsoft:office:2010:sp2:*:*:*:*:x64:*
    • cpe:2.3:a:microsoft:office:2010:sp2:*:*:*:*:x86:*
    • cpe:2.3:a:microsoft:office:2011:*:*:*:mac:*:*:*
    • cpe:2.3:a:microsoft:office:2013:sp1:*:*:*:*:*:*
  • cpe:2.3:a:microsoft:word:2007:sp3:*:*:*:*:*:*
  • cpe:2.3:a:microsoft:word_viewer:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:microsoft:word_viewer:*:*:*:*:*:*:*:*
    • (no CPE)

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

3

News mentions

0

No linked articles in our index yet.