|
List Info
Thread: PCWorks: Microsoft Office, Outlook, Access, Excel, Frontpage, Word, Powerpoint, Publisher, & more, M
|
|
| PCWorks: Microsoft Office, Outlook,
Access, Excel, Frontpage, Word,
Powerpoint, Publisher, & more, M |

|
2006-10-11 04:35:32 |
TITLE:
Microsoft Office Multiple Code Execution Vulnerabilities
SECUNIA ADVISORY ID:
SA22339
VERIFY ADVISORY:
http://secunia.c
om/advisories/22339/
CRITICAL:
Highly critical
IMPACT:
System access
WHERE:
From remote
SOFTWARE:
Microsoft Word 2003 Viewer
http://secunia.com/p
roduct/5523/
Microsoft Word 2003
http://secunia.com/p
roduct/4908/
Microsoft Word 2002
http://secunia.com/p
roduct/2150/
Microsoft Word 2000
http://secunia.com/p
roduct/2149/
Microsoft Visio 2003
http://secunia.com/p
roduct/1092/
Microsoft Visio 2002
http://secunia.com/p
roduct/1091/
Microsoft Publisher 2003
http://secunia.com/
product/10986/
Microsoft Publisher 2002
http://secunia.com/pro
duct/30/
Microsoft Publisher 2000
http://secunia.com/pro
duct/29/
Microsoft Project 2003
http://secunia.com/p
roduct/3170/
Microsoft Project 2002
http://secunia.com/pr
oduct/157/
Microsoft Project 2000
http://secunia.com/pr
oduct/158/
Microsoft Powerpoint 2003
http://secunia.com/p
roduct/5274/
Microsoft PowerPoint 2002
http://secunia.com/p
roduct/2223/
Microsoft PowerPoint 2000
http://secunia.com/p
roduct/3052/
Microsoft Outlook 2003
http://secunia.com/p
roduct/3292/
Microsoft Outlook 2002
http://secunia.com/pro
duct/34/
Microsoft Outlook 2000
http://secunia.com/pro
duct/33/
Microsoft OneNote 2003
http://secunia.com/p
roduct/7140/
Microsoft Office XP
http://secunia.com/pro
duct/23/
Microsoft Office X for Mac
http://secunia.com/p
roduct/2610/
Microsoft Office 2004 for Mac
http://secunia.com/p
roduct/8713/
Microsoft Office 2003 Student and Teacher Edition
http://secunia.com/p
roduct/2278/
Microsoft Office 2003 Standard Edition
http://secunia.com/p
roduct/2275/
Microsoft Office 2003 Small Business Edition
http://secunia.com/p
roduct/2277/
Microsoft Office 2003 Professional Edition
http://secunia.com/p
roduct/2276/
Microsoft Office 2000
http://secunia.com/pro
duct/24/
Microsoft InfoPath 2003
http://secunia.com/p
roduct/6463/
Microsoft Access 2000
http://secunia.com/pro
duct/36/
Microsoft Access 2002
http://secunia.com/pro
duct/35/
Microsoft Access 2003
http://secunia.com/p
roduct/4904/
Microsoft Excel 2000
http://secunia.com/p
roduct/3054/
Microsoft Excel 2002
http://secunia.com/p
roduct/4043/
Microsoft Excel 2003
http://secunia.com/p
roduct/4970/
Microsoft Excel Viewer 2003
http://secunia.com/p
roduct/7700/
Microsoft Frontpage 2000
http://secunia.com/pro
duct/27/
Microsoft Frontpage 2002
http://secunia.com/pro
duct/26/
Microsoft Frontpage 2003
http://secunia.com/p
roduct/6997/
DESCRIPTION:
Multiple vulnerabilities have been reported in Microsoft
Office,
which can be exploited by malicious people to compromise a
user's
system.
1) An unspecified boundary error within the parsing of
certain
strings can be exploited to cause a buffer overflow via a
specially
crafted Office document.
2) A boundary error when parsing chart records can be
exploited
to
cause a buffer overflow via a specially crafted Office
document.
3) An unspecified boundary error when parsing certain
records
can be
exploited to cause a buffer overflow via a specially crafted
Office
document.
4) A boundary error within the parsing of Smart Tags can be
exploited
to cause a buffer overflow via a specially crafted Office
document.
Successful exploitation of the vulnerabilities allows
execution
of
arbitrary code.
SOLUTION:
Apply patches.
Microsoft Office 2000 SP3:
http://www.microsof
t.com/downloads/details.aspx?FamilyId=E0C7E1E4-7859-4C7E-898
E-1CF05014885B
Microsoft Office XP SP3:
http://www.microsof
t.com/downloads/details.aspx?FamilyId=958EE063-D88D-4E45-855
5-4D1C4730F5C8
Microsoft Office 2003 SP1/SP2:
http://www.microsof
t.com/downloads/details.aspx?FamilyId=0D399F68-EC0D-4768-984
6-B16B3DADF247
Microsoft Project 2000 SR1:
http://www.microsof
t.com/downloads/details.aspx?FamilyId=266A9870-CD03-45CA-877
B-B5AD2C873FE5
Microsoft Project 2002 SP1:
http://www.microsof
t.com/downloads/details.aspx?FamilyId=A77DEA18-D237-4BB0-946
4-CE31B6AE52D6
Microsoft Visio 2002 SP2:
http://www.microsof
t.com/downloads/details.aspx?FamilyId=FD4B7660-0FC5-43E5-968
3-B6DAE96136BB
Microsoft Office 2004 for Mac:
http://www.microsoft.co
m/mac/
Microsoft Office v. X for Mac:
http://www.microsoft.co
m/mac/
ORIGINAL ADVISORY:
MS06-062 (KB922581):
http://www.microsoft.com/technet/security/Bullet
in/MS06-062.mspx
============= PCWorks Mailing List =================
Don't see your post? Check our posting guidelines &
make sure you've followed proper posting procedures,
http://pcworkers.com/r
ules.htm
Contact list owner <owner-pcworks imagicomm.com>
Unsubscribing and other changes: http://pcworkers.com
=====================================================
|
|
[1]
|
|
|
about | contact Other archives ( Real Estate discussion Medical topics )
|