Skip to main content

Microsoft Office HXDS ASLR Vulnerability

Last Update Date: 13 Dec 2013 Release Date: 11 Dec 2013 3701 Views

RISK: Medium Risk

TYPE: Clients - Productivity Products

TYPE: Productivity Products

A security feature bypass exists in an Office shared component that does not properly implement Address Space Layout Randomization (ASLR). The vulnerability could allow an attacker to bypass the ASLR security feature, after which the attacker could load additional malicious code in the process in an attempt to exploit another vulnerability.


Impact

  • Security Restriction Bypass

System / Technologies affected

  • Microsoft Office 2007
  • Microsoft Office 2010

Solutions

Before installation of the software, please visit the software manufacturer web-site for more details.


Vulnerability Identifier


Source


Related Link