Microsoft Word Record Validation Vulnerability Lets Remote Users Execute Arbitrary Code
|
|
SecurityTracker Alert ID: 1016787 |
|
SecurityTracker URL: http://securitytracker.com/id/1016787
|
|
CVE Reference:
CVE-2006-4534
(Links to External Site)
|
Updated: Oct 10 2006
|
Original Entry Date: Sep 5 2006
|
Impact:
Execution of arbitrary code via network, User access via network
|
Fix Available: Yes Vendor Confirmed: Yes
|
Version(s): 2000, 2002, 2003, 2004 for Mac, 2004 v. X for Mac
|
Description:
A vulnerability was reported in Microsoft Word. A remote user can cause arbitrary code to be executed on the target user's system.
A remote user can create a specially crafted Word or Office document that, when loaded by the target user, will trigger a buffer overflow and execute arbitrary code on the target system. The code will run with the privileges of the target user.
Several anti-virus vendors report that malware is circulating that attempts to exploit this vulnerability in Microsoft Word 2000.
Word Viewer 2003 is not affected.
A FAQ is available at:
http://blogs.securiteam.com/?p=586
|
Impact:
A remote user can create a document that, when loaded by the target user, will execute arbitrary code on the target user's system.
|
Solution:
The vendor has issued the following fixes:
Microsoft Office 2000 Service Pack 3:
http://www.microsoft.com/downloads/details.aspx?FamilyId=CFC85449-4941-4DA5-A919-1DA388054E83
Microsoft Office XP Service Pack 3:
http://www.microsoft.com/downloads/details.aspx?FamilyId=5652303E-04B3-4713-AF2E-2C8D2450468D
Microsoft Office 2003 Service Pack 1 or Service Pack 2:
http://www.microsoft.com/downloads/details.aspx?FamilyId=30C516EB-BD63-4248-A34D-47AF7E9EA55A
Microsoft Office Word 2003 Viewer:
http://www.microsoft.com/downloads/details.aspx?FamilyId=EB230319-14A5-4206-A601-CF9DDE89352A
Microsoft Works Suite 2004:
http://www.microsoft.com/downloads/details.aspx?FamilyId=5652303E-04B3-4713-AF2E-2C8D2450468D
Microsoft Works Suite 2005:
http://www.microsoft.com/downloads/details.aspx?FamilyId=5652303E-04B3-4713-AF2E-2C8D2450468D
Microsoft Works Suite 2006:
http://www.microsoft.com/downloads/details.aspx?FamilyId=5652303E-04B3-4713-AF2E-2C8D2450468D
Microsoft Office 2004 for Mac:
http://www.microsoft.com/mac/
Microsoft Office v. X for Mac:
http://www.microsoft.com/mac/
The Microsoft advisory is available at:
http://www.microsoft.com/technet/security/bulletin/ms06-060.mspx
|
Vendor URL: www.microsoft.com/technet/security/bulletin/ms06-060.mspx (Links to External Site)
|
Cause:
Input validation error
|
Underlying OS:
Windows (Any)
|
|
Message History:
None.
|
Source Message Contents
|
Date: Mon, 4 Sep 2006 23:55:39 -0400
Subject: Microsoft Word potential vulnerability
|
http://www.symantec.com/enterprise/security_response/writeup.jsp?docid=2006-090219-2855-99
> The Trojan seems to exploit a previously undocumented vulnerability in Microsoft Word 2000.
|
|