Oval Definition:oval:org.mitre.oval:def:18624
Revision Date:2014-09-22Version:19
Title:Access Memory Corruption Vulnerability (CVE-2013-3155) - MS13-074
Description:Microsoft Access 2007 SP3, 2010 SP1 and SP2, and 2013 in Microsoft Office allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted Access file, aka "Access Memory Corruption Vulnerability," a different vulnerability than CVE-2013-3157.
Family:windowsClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2013-3155
Platform(s):Microsoft Windows 7
Microsoft Windows 8
Microsoft Windows Server 2003
Microsoft Windows Server 2008
Microsoft Windows Server 2008 R2
Microsoft Windows Server 2012
Microsoft Windows Vista
Microsoft Windows XP
Product(s):Microsoft Office Access 2007
Microsoft Office Access 2010
Microsoft Office Access 2013
Definition Synopsis
  • Access 2007 and vulnerable file version
  • Microsoft Access 2007 SP3 is installed
  • AND Check if the version of acecore.dll is less than 12.0.6679.5000
  • OR Office Access 2010 and vulnerable file version
  • Office Access 2010 SP1 / SP2
  • Microsoft Access 2010 SP1 is installed
  • OR Microsoft Access 2010 SP2 is installed
  • AND Check if the version of acecore.dll is less than 14.0.7102.5000
  • OR Access 2013 and vulnerable file version
  • Microsoft Access 2013 is installed
  • AND Check if the version of acecore.dll is less than 15.0.4517.1003
  • BACK