CVE-2006-0014

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
12/04/2006
Last modified:
16/04/2026

Description

Buffer overflow in Microsoft Outlook Express 5.5 and 6 allows remote attackers to execute arbitrary code via a crafted Windows Address Book (WAB) file containing "certain Unicode strings" and modified length values.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:microsoft:outlook_express:5.5:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:outlook_express:5.5:sp1:*:*:*:*:*:*
cpe:2.3:a:microsoft:outlook_express:5.5:sp2:*:*:*:*:*:*
cpe:2.3:a:microsoft:outlook_express:6.0:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:outlook_express:6.0:sp1:*:*:*:*:*:*


References to Advisories, Solutions, and Tools