CVE-2002-0152
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
22/04/2002
Last modified:
03/04/2025
Description
Buffer overflow in various Microsoft applications for Macintosh allows remote attackers to cause a denial of service (crash) or execute arbitrary code by invoking the file:// directive with a large number of / characters, which affects Internet Explorer 5.1, Outlook Express 5.0 through 5.0.2, Entourage v. X and 2001, PowerPoint v. X, 2001, and 98, and Excel v. X and 2001 for Macintosh.
Impact
Base Score 2.0
7.50
Severity 2.0
HIGH
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:a:microsoft:entourage:2001:*:macos:*:*:*:*:* | ||
cpe:2.3:a:microsoft:entourage:v._x:*:macos:*:*:*:*:* | ||
cpe:2.3:a:microsoft:excel:2001:*:mac_os_x:*:*:*:*:* | ||
cpe:2.3:a:microsoft:excel:x:*:mac_os_x:*:*:*:*:* | ||
cpe:2.3:a:microsoft:ie:5.1:*:mac_os:*:*:*:*:* | ||
cpe:2.3:a:microsoft:office:2001:*:macos:*:*:*:*:* | ||
cpe:2.3:a:microsoft:office:2001:sr1:mac_os:*:*:*:*:* | ||
cpe:2.3:a:microsoft:office:v.x:*:mac:*:*:*:*:* | ||
cpe:2.3:a:microsoft:outlook_express:5.0:*:macos:*:*:*:*:* | ||
cpe:2.3:a:microsoft:outlook_express:5.0.1:*:macos:*:*:*:*:* | ||
cpe:2.3:a:microsoft:outlook_express:5.0.2:*:macos:*:*:*:*:* | ||
cpe:2.3:a:microsoft:outlook_express:5.0.3:*:macos:*:*:*:*:* | ||
cpe:2.3:a:microsoft:powerpoint:98:*:macos:*:*:*:*:* | ||
cpe:2.3:a:microsoft:powerpoint:2001:*:macos:*:*:*:*:* | ||
cpe:2.3:a:microsoft:powerpoint:v.x:*:macos:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- http://marc.info/?l=bugtraq&m=101897994314015&w=2
- http://www.iss.net/security_center/static/8850.php
- http://www.osvdb.org/5357
- http://www.securityfocus.com/bid/4517
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2002/ms02-019
- http://marc.info/?l=bugtraq&m=101897994314015&w=2
- http://www.iss.net/security_center/static/8850.php
- http://www.osvdb.org/5357
- http://www.securityfocus.com/bid/4517
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2002/ms02-019