Microsoft Word Malformed Stack Remote Code Execution Vulnerability
BID:19835
CVE-2006-4534 |Info
Microsoft Word Malformed Stack Remote Code Execution Vulnerability
| Bugtraq ID: | 19835 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2006-4534 |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 02 2006 12:00AM |
| Updated: | Oct 13 2006 05:49PM |
| Credit: | Symantec has received samples of malicious content exploiting this issue. The original discoverer of this issue is currently unknown. |
| Vulnerable: |
Microsoft Works Suite 2006 0 Microsoft Works Suite 2005 0 Microsoft Works Suite 2004 Microsoft Word 2003 Microsoft Word 2002 SP3 Microsoft Word 2002 SP2 Microsoft Word 2002 SP1 Microsoft Word 2002 Microsoft Word 2000 SR1a Microsoft Word 2000 SR1 Microsoft Word 2000 SP3 Microsoft Word 2000 SP2 Microsoft Word 2000 Microsoft Office XP SP3 Microsoft Office XP SP2 Microsoft Office XP SP1 Microsoft Office 2003 SP3 Microsoft Office 2003 SP2 Microsoft Office 2003 SP1 Microsoft Office 2000 SP3 Microsoft Office 2000 SP1 Microsoft Office 2000 Microsoft Internet Explorer for Unix SP2 |
| Not Vulnerable: |
Microsoft Word Viewer 2003 0 |
Discussion
Microsoft Word Malformed Stack Remote Code Execution Vulnerability
Microsoft Word is prone to a remote code-execution vulnerability.
Exploiting this issue can allow remote attackers to execute arbitrary code on a vulnerable computer by supplying a malicious mail merge file to a user. This issue is being actively exploited in the wild as Trojan.MDropper.Q.
Microsoft Word is prone to a remote code-execution vulnerability.
Exploiting this issue can allow remote attackers to execute arbitrary code on a vulnerable computer by supplying a malicious mail merge file to a user. This issue is being actively exploited in the wild as Trojan.MDropper.Q.
Exploit / POC
Microsoft Word Malformed Stack Remote Code Execution Vulnerability
An exploit is known to be circulating in the wild.
An exploit is known to be circulating in the wild.
Solution / Fix
Microsoft Word Malformed Stack Remote Code Execution Vulnerability
Solution:
Microsoft has released a security advisory addressing this issue.
Microsoft Office XP SP3
Microsoft Works Suite 2005 0
Microsoft Office 2000 SP3
Microsoft Works Suite 2004
Microsoft Works Suite 2006 0
Solution:
Microsoft has released a security advisory addressing this issue.
Microsoft Office XP SP3
-
Microsoft Security Update for Word 2002 (KB920817)
http://www.microsoft.com/downloads/details.aspx?familyid=5652303E-04B3 -4713-AF2E-2C8D2450468D&displaylang=en
Microsoft Works Suite 2005 0
-
Microsoft Security Update for Word 2002 (KB920817)
http://www.microsoft.com/downloads/details.aspx?familyid=5652303E-04B3 -4713-AF2E-2C8D2450468D&displaylang=en
Microsoft Office 2000 SP3
-
Microsoft Security Update for Word 2000 (KB920910)
http://www.microsoft.com/downloads/details.aspx?familyid=CFC85449-4941 -4DA5-A919-1DA388054E83&displaylang=en
Microsoft Works Suite 2004
-
Microsoft Security Update for Word 2002 (KB920817)
http://www.microsoft.com/downloads/details.aspx?familyid=5652303E-04B3 -4713-AF2E-2C8D2450468D&displaylang=en
Microsoft Works Suite 2006 0
-
Microsoft Security Update for Word 2002 (KB920817)
http://www.microsoft.com/downloads/details.aspx?familyid=5652303E-04B3 -4713-AF2E-2C8D2450468D&displaylang=en
References
Microsoft Word Malformed Stack Remote Code Execution Vulnerability
References:
References:
- Microsoft Office Product Homepage (Microsoft)
- Microsoft Security Advisory (925059) (Microsoft)
- Microsoft Security Advisory MS06-060 (Microsoft)
- Microsoft Word 0-day Vulnerability FAQ - September 2006, CVE-2006-4534 (Security Team Blogs)
- New tricks with old software - New Zero-Day in MS Office 2000 (Symantec)
- Office Product Updates (Microsoft)
- Technet Security (Microsoft)
- Vulnerability Note VU#806548 (US-CERT)
- Word Viewer 2003 Download Page (Microsoft)