Microsoft Security Bulletin MS10-056 - Critical

Vulnerabilities in Microsoft Office Word Could Allow Remote Code 
Execution (2269638)

Published: August 10, 2010

Version: 1.0

General Information

Executive Summary

This security update resolves four privately reported vulnerabilities 
in Microsoft Office. The most severe vulnerabilities could allow 
remote code execution if a user opens or previews a specially crafted 
RTF e-mail message. An attacker who successfully exploited any of 
these vulnerabilities could gain the same user rights as the local 
user. Users whose accounts are configured to have fewer user rights 
on the system could be less impacted than users who operate with 
administrative user rights.

This security update is rated Critical for all supported editions of 
Microsoft Office Word 2007. This security update is also rated 
Important for all supported editions of Microsoft Office Word 2002, 
Microsoft Office Word 2003, Microsoft Office 2004 for Mac, and 
Microsoft Office 2008 for Mac; Open XML File Format Converter for 
Mac; Works 9; and all supported versions of Microsoft Office Word 
Viewer and Microsoft Office Compatibility Pack. For more information, 
see the subsection, Affected and Non-Affected Software, in this 
section.

The update addresses the vulnerabilities by modifying the way that 
Microsoft Office Word opens specially crafted Word files and by 
modifying the way that Word handles certain properties of rich text 
data. For more information about the vulnerability, see the 
Frequently Asked Questions (FAQ) subsection for the specific 
vulnerability entry under the next section, Vulnerability Information.

...

http://www.microsoft.com/technet/security/bulletin/ms10-056.mspx

_______________________________________________
Medianews mailing list
[email protected]
http://lists.etskywarn.net/mailman/listinfo/medianews

Reply via email to