Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2011-1988

Overview

Vulnerability Score 9.3 9.3
CVE Id CVE-2011-1988
Last Modified 26 Jan 2012 11:00:09
Published 15 Sep 2011 08:26:48
Confidentiality Impact COMPLETE COMPLETE
Integrity Impact COMPLETE COMPLETE
Availability Impact COMPLETE COMPLETE
Access Vector NETWORK
Access Complexity MEDIUM
Authentication NONE

CVE-2011-1988

Summary

Microsoft Excel 2003 SP3 and 2007 SP2; Excel in Office 2007 SP2; Office 2004 and 2008 for Mac; Open XML File Format Converter for Mac; Excel Viewer SP2; and Office Compatibility Pack for Word, Excel, and PowerPoint 2007 File Formats SP2 do not properly parse records in Excel spreadsheets, which allows remote attackers to execute arbitrary code via a crafted spreadsheet, aka "Excel Heap Corruption Vulnerability."

Vulnerable Systems

Application

  • Microsoft Excel 2003

  • Microsoft Excel 2007

  • Microsoft Excel Viewer

  • Microsoft Office 2004

  • Microsoft Office 2007

  • Microsoft Office 2008

  • Microsoft Office Compatibility Pack 2007

  • Microsoft Open Xml File Format Converter


References

CERT - TA11-256A

MS - MS11-072

Related Patches

MS11-072 Security Update for Microsoft Excel 2010, 32-Bit Edition (KB2553070)

MS11-072 Security Update for Microsoft Office 2010, 32-Bit Edition (KB2553096)

MS11-072 Security Update for Excel Services for Microsoft Office SharePoint Server 2007, 32-Bit Edition (KB2553093)

MS11-072 Security Update for Microsoft Office 2010, 32-Bit Edition (KB2553091)

MS11-072 Security Update for Excel Services for Microsoft Office SharePoint Server 2007, 64-Bit Edition (KB2553093)

MS11-072 Security Update for Microsoft Excel 2010, 64-Bit Edition (KB2553070)

MS11-072 Security Update for Microsoft Office 2010, 64-Bit Edition (KB2553096)

MS11-072 Security Update for Microsoft Office 2010, 64-Bit Edition (KB2553091)

MS11-072 2587505 2553075 Security Update for Microsoft Office Excel Viewer 2007 (All Languages)

MS11-072 2587505 2598782 Microsoft Office 2004 for Mac Update 11.6.5

MS11-072 2587505 2598781 Microsoft Office 2008 for Mac Update 12.3.1 (Rev 2)


Last Updated: 27 May 2016 10:56:52