Skip to main content

Microsoft Office Remote Code Execution Vulnerabilities

Last Update Date: 11 Feb 2015 10:22 Release Date: 11 Feb 2015 3051 Views

RISK: Medium Risk

TYPE: Clients - Productivity Products

TYPE: Productivity Products
  1. Excel Remote Code Execution Vulnerability
    A remote code execution vulnerability exists in Microsoft Excel that is caused when Excel improperly handles objects in memory while parsing specially crafted Office files. This could corrupt system memory in such a way as to allow an attacker to execute arbitrary code.
  2. Office Remote Code Execution Vulnerability
    A remote code execution vulnerability exists in Microsoft Word that is caused when Word improperly handles objects in memory while parsing specially crafted Office files. This could corrupt system memory in such a way as to allow an attacker to execute arbitrary code.
  3. OneTableDocumentStream Remote Code Execution Vulnerability
    A remote code execution vulnerability exists in Microsoft Word that is caused when Word improperly handles objects in memory while parsing specially crafted Office files. This could corrupt system memory in such a way as to allow an attacker to execute arbitrary code.

Impact

  • Remote Code Execution

System / Technologies affected

  • Microsoft Office 2007
  • Microsoft Office 2010
  • Microsoft Office 2013
  • Microsoft SharePoint Server 2010
  • Microsoft Office Web Apps 2010

Solutions

Before installation of the software, please visit the software manufacturer web-site for more details.


Vulnerability Identifier


Source


Related Link