Release DateDec 13, 2011 |
Severitycritical |
ImpactSystem Compromise: Remote attackers can gain control of vulnerable systems. |
DescriptionThis indicates an attack attempt to exploit a Memory Corruption vulnerabilityin Microsoft Office. This issue is caused by an error when handling a "xls" file with malformed VBA streams. It can be exploited via a crafted "xls" file, leading to remote code execution. |
Affected ProductsMicrosoft Office 2003Microsoft Office 2007 Microsoft Office 2010 |
Recommended ActionsCurrently we are not aware of any vendor supplied patch for this issue. |
Coverage IPS
VCM |
Reference/shttp://aluigi.altervista.org/adv/excel_1-adv.txt |