Microsoft Word String and Mail Merge Record Validation Flaws Let Remote Users Execute Arbitrary Code
|
|
SecurityTracker Alert ID: 1017032
|
|
SecurityTracker URL: http://securitytracker.com/id?1017032
|
|
CVE Reference: CVE-2006-3647
, CVE-2006-3651
, CVE-2006-4693
(Links to External Site)
|
Date: Oct 10 2006
|
Impact: Execution of arbitrary code via network, User access via network
|
Fix Available: Yes
Vendor Confirmed: Yes
|
Advisory: Microsoft Security Bulletin
|
Version(s): 2000, 2002, 2003, 2004 for Mac, 2004 v. X for Mac
|
Description: A vulnerability was reported in Microsoft Word. A remote user can cause arbitrary code to be executed on the target user's system.
A remote user can create a specially crafted Word document that, when loaded by the target user, will trigger a buffer overflow and
execute arbitrary code on the target system. The code will run with the privileges of the target user.
A malformed string or
mail merge record can trigger these vulnerabilities.
Microsoft credits Chen Xiaobo of McAfee Avert Labs and Cu Fang with reporting
these vulnerabilities.
|
Impact: A remote user can create a file that, when loaded by the target user, will execute arbitrary code on the target user's system.
|
Solution: The vendor has issued the following fixes:
Microsoft Office 2000 Service Pack 3:
http://www.microsoft.com/downloads/details.aspx?FamilyId=CFC85449-4941-4DA5-A919-1DA
388054E83
Microsoft Office XP Service Pack 3:
http://www.microsoft.com/downloads/details.aspx?FamilyId=5652303E-04B3-4713-AF2E-2C8D2450468D
Microsoft
Office 2003 Service Pack 1 or Service Pack 2:
http://www.microsoft.com/downloads/details.aspx?FamilyId=30C516EB-BD63-4248-A34D-47AF7E9EA55A
Microsoft
Office Word 2003 Viewer:
http://www.microsoft.com/downloads/details.aspx?FamilyId=EB230319-14A5-4206-A601-CF9DDE89352A
Microsoft
Works Suite 2004:
http://www.microsoft.com/downloads/details.aspx?FamilyId=5652303E-04B3-4713-AF2E-2C8D2450468D
Microsoft
Works Suite 2005:
http://www.microsoft.com/downloads/details.aspx?FamilyId=5652303E-04B3-4713-AF2E-2C8D2450468D
Microsoft
Works Suite 2006:
http://www.microsoft.com/downloads/details.aspx?FamilyId=5652303E-04B3-4713-AF2E-2C8D2450468D
Microsoft
Office 2004 for Mac:
http://www.microsoft.com/mac/
Microsoft Office v. X for Mac:
http://www.microsoft.com/mac/
The
Microsoft advisory is available at:
http://www.microsoft.com/technet/security/bulletin/ms06-060.mspx
|
Vendor URL: www.microsoft.com/technet/security/bulletin/ms06-060.mspx (Links to External Site)
|
Cause: Boundary error, Input validation error
|
Underlying OS: UNIX (OS X), Windows (2000), Windows (2003), Windows (XP)
|
|
Message History:
None.
|
Source Message Contents
|
Date: Tue, 10 Oct 2006 14:20:48 -0400
Subject: Microsoft Security Bulletin MS06-060: Vulnerabilities in Microsoft Word Could Allow Remote Code Execution (924554)
|
http://www.microsoft.com/technet/security/bulletin/ms06-060.mspx
CVE-2006-3647
CVE-2006-3651
CVE-2006-4534
CVE-2006-4693
|
|