Users of Microsoft Office Excel please be advised of an Extra PtgExtraArray Parsing vulnerability that has been identified.
To view this vulnerability, possible remedies, and others please check out the Security Advisories at Critical Watch (http://criticalwatch.com/support/security-advisories.aspx)
Amplify’d from www.criticalwatch.com
CVE-2010-3239: Microsoft Office Excel Extra PtgExtraArray Parsing Vulnerability
. AFFECTED PRODUCTS
---------------------------
Microsoft Office XP Service Pack 3
. DESCRIPTION
---------------------
VUPEN Vulnerability Research Team discovered a critical vulnerability
in Microsoft Office Excel.
The vulnerability is caused by a memory corruption error when processing
PtgExtraArray structures in an Excel file, which could be exploited
by remote attackers to execute arbitrary code by tricking a user into
opening a specially crafted Excel document.
Read more at www.criticalwatch.com
See this Amp at http://bit.ly/czHeJP

No comments:
Post a Comment