Microsoft Office Multiple Remote Code Execution VulneRabilities (MS06-012)

xiaoxiao2021-03-14  190

CVE

Id

:

CVE-2005-4131

-

CVE-2006-0009

-

CVE-2006-0028

-

CVE-2006-0029

-

CVE-2006-0030

-

CVE-2006-0031

Rated as:

Critical

Remotely Exploitable: YESLOCALLY EXPLOITABLE: YESRELEASE DATE: 2006-03-15

Technical DescriptionMultiple vulnerabilities have been identified in Microsoft Office, which could be exploited by remote attackers to execute arbitrary commands. The first issue is due to a memory corruption error in Excel when handling a malformed range, which could be exploited by attackers to compromise a vulnerable System Via a Malicious Document.The Second Flaw Is Due to a Memory Corruption Error In Office When Handling A Specially Crafted "Routing Slip"

, Which could be exploited by attackers to compromise a vulnerable system via a malicious document.The third vulnerability is due to a memory corruption error in Excel when handling malformed BOOLERR records in a BIFF file, which could be exploited by attackers to compromise a vulnerable system via a malicious document.The fourth flaw is due to a memory corruption error in Excel when handling a specially crafted description, which could be exploited by attackers to compromise a vulnerable system via a malicious document.The fifth issue is due to a memory corruption error in Excel when handling specially crafted graphics, which could be exploited by attackers to compromise a vulnerable via system a malicious document.The sixth vulnerability is due to a memory corruption error in Excel when handling malformed records, which could be exploited by attackers to compromise a Vulnerable System Via a Malicious Excel Document.Affected Productsmicrosoft Office 2000 Service Pack 3MICROFT WORD 2 000Microsoft Excel 2000Microsoft Outlook 2000Microsoft PowerPoint 2000Microsoft Office 2000 MultiLanguage PacksMicrosoft Office XP Service Pack 3Microsoft Word 2002Microsoft Excel 2002Microsoft Outlook 2002Microsoft PowerPoint 2002Microsoft Office XP Multilingual User Interface PacksMicrosoft Office 2003 Service Pack 1Microsoft Office 2003 Service Pack 2Microsoft Excel 2003Microsoft Excel 2003 ViewerMicrosoft Works Suite 2000Microsoft Works Suite 2001Microsoft Works Suite 2002Microsoft Works Suite 2003Microsoft Works Suite 2004Microsoft Works Suite 2005Microsoft Works Suite 2006Microsoft Office X for MacMicrosoft Excel X for MacMicrosoft Office 2004 for MacMicrosoft Excel 2004 for Mac SolutionApply patches: http:

转载请注明原文地址:https://www.9cbs.com/read-129320.html

New Post(0)