|
|
|
![]() |
Vulnerability Note VU#642428Microsoft Excel fails to properly perform range validation when parsing document filesOverviewMicrosoft Excel contains an error in range validation, which may allow a remote unauthenticated attacker to execute arbitrary code on a vulnerable system.I. DescriptionMicrosoft Excel fails to properly validate ranges in data files. When a file with a malformed range is opened in Excel, system memory can be corrupted in a way that may allow an attacker to execute arbitrary code.II. ImpactBy convincing a user to open a specially crafted Excel file, a remote unauthenticated attacker may be able to execute arbitrary code on a vulnerable system.III. SolutionInstall an updateInstall an update, as specified in Microsoft Security Bulletin MS06-012.
References
This vulnerability was publicly disclosed by fearwall. This document was written by Will Dormann.
If you have feedback, comments, or additional information about this vulnerability, please send us
email. |
|||||||||||||||||||||||||||||||||||||
|
|||||||||||||||||||||||||||||||||||||||