TECH.BLORGE.com
VISTA.BLORGE.com
MAC.BLORGE.com
GAMER.BLORGE.com

October 11, 2007 |

Legacy Microsoft Word exploit on the loose

By Jonathan Schlaffer





Legacy Microsoft Word exploit on the loose Microsoft patched several vulnerabilities in its currently supported operating systems and Office suit but a new exploit is circling around older, but still supported, versions of Word.

Security vendor Symantec noticed a vulnerability crop up on Wednesday, just one day after the patches were released, that can crash every single version of Word except the newest version, Word 2007.  The vulnerability comes in the form of a Word document and includes shell code with three pieces of malware attached to it.

ComputerWorld says it was also discovered that the document had been created using the version of Word that is included with Office for Mac 2004.

The patches that Microsoft released were supposed to correct this very same vulnerability and while not exactly the same, a new hole in the patches were found and exploited.

A spokesperson for Symantec said, “Taking a closer look at that vulnerability, we confirmed that this document was in fact exploiting the same vulnerability.”

Before you ask, Office 2004 for Mac is also affected, updates for all version of Microsoft Word/Office are available through Microsoft Update or Office Update.  The Mac Edition of the patch is available right here.

Related:

  • Microsoft no-security-patch statement gives cybercrooks more time
  • Why your online passwords can outlive you
  • Microsoft says public will face hardship without Word on the market in appeal
  • Judge orders Microsoft to stop selling Word or lobotomize it
  • Dell and HP back Microsoft against ruling to ban Word in the U.S.




  • Sign up for the BLORGE daily email newsletter

    One Response to “Legacy Microsoft Word exploit on the loose”

    1. Samson John:

      Great Piece of Information.

      Thanks
      Samson John

      http://www.xanga.com/microsoftofficesupport

    Leave a Reply:

    Copyright © 2008 Engaging and compelling blogs that entertain and inform