Security Advisory 2953095 for Microsoft Word 2010

Started by Corrine, March 24, 2014, 09:41:39 PM

Previous topic - Next topic

0 Members and 1 Guest are viewing this topic.

Corrine

Microsoft released Security Advisory 2953095 which relates to a vulnerability in Microsoft Word. At this time, Microsoft is aware of limited, targeted attacks directed at Microsoft Word 2010.

With the vulnerability, an attacker could cause remote code execution if someone was convinced to open a specially crafted Rich Text Format (RTF) file or a specially crafted mail in Microsoft Outlook while using Microsoft Word as the email viewer.

Links to the Microsoft Fix it solution, other recommendations and references are available in my blog post at Security Advisory 2953095 for Microsoft Word 2010.


Take a walk through the "Security Garden" -- Where Everything is Coming up Roses!

Remember - A day without laughter is a day wasted.
May the wind sing to you and the sun rise in your heart.

Corrine

If you installed the Fix it solution for the RTF vulnerability, after installing MS14-017, disable the Fix it so RTF files will render properly.

See my blog post at Microsoft Security Bulletin for April, 2014 for a link to disable the Fix it solution.


Take a walk through the "Security Garden" -- Where Everything is Coming up Roses!

Remember - A day without laughter is a day wasted.
May the wind sing to you and the sun rise in your heart.