Wednesday, December 6, 2006

MS Word Remote Code Execution Zero-Day Alert

Via eWeek.com -

Microsoft on Dec. 5 warned that an unpatched vulnerability in its Word software program is being used in targeted, zero-day attacks.

A security advisory from the Redmond, Wash., company said the flaw can be exploited if a user simply opens a rigged Word document.



Secunia is rating it as "Extremely critical" in SA23232

CVE-2006-5994 has been reserved but contains no additional information at this time.

No comments:

Post a Comment