Anfälligkeitssuche        Suche in 219043 CVE Beschreibungen
und 99761 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.804425
Kategorie:Windows : Microsoft Bulletins
Titel:Microsoft Office Compatibility Pack Remote Code Execution Vulnerabilities (2949660)
Zusammenfassung:This host is missing a critical security update according to; Microsoft Bulletin MS14-017.
Beschreibung:Summary:
This host is missing a critical security update according to
Microsoft Bulletin MS14-017.

Vulnerability Insight:
Multiple flaws are due to an error within,

- Microsoft Word when handling certain RTF-formatted data can be exploited to
corrupt memory.

- Microsoft Office File Format Converter when handling certain files can be
exploited to corrupt memory.

- Microsoft Word when handling certain files can be exploited to cause a
stack-based buffer overflow.

Vulnerability Impact:
Successful exploitation will allow remote attackers to execute the arbitrary
code, cause memory corruption and compromise the system.

Affected Software/OS:
Microsoft Office Compatibility Pack Service Pack 3 and prior.

Solution:
The vendor has released updates. Please see the references for more information.

CVSS Score:
9.3

CVSS Vector:
AV:N/AC:M/Au:N/C:C/I:C/A:C

Querverweis: BugTraq ID: 66385
BugTraq ID: 66614
BugTraq ID: 66629
Common Vulnerability Exposure (CVE) ID: CVE-2014-1757
CERT/CC vulnerability note: VU#882841
http://www.kb.cert.org/vuls/id/882841
Microsoft Security Bulletin: MS14-017
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2014/ms14-017
Common Vulnerability Exposure (CVE) ID: CVE-2014-1758
Common Vulnerability Exposure (CVE) ID: CVE-2014-1761
CopyrightCopyright (C) 2014 Greenbone Networks GmbH

Dies ist nur einer von 99761 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2024 E-Soft Inc. Alle Rechte vorbehalten.