|
|
On the heels of my Zero-Day Excels Over Word blog, McAfee Avert Labs is currently investigating a new Word exploit. Preliminary analysis shows that this is a different issue than those referenced in my last blog:
This new exploit may be somehow related to MS06-027 and the DAT files proactively detect this new threat as a variant of Exploit-MS06-027 since June 2006. This threat appears to exploit Word 2000. Again, this is preliminary analysis. We are working with Microsoft to confirm the history of this vulnerability and will update the blog when we have more information.
Like many of the recent Word exploits, this appears to have been used in a very limited and targeted attack.
Update Feb 9, 1:30pm
Microsoft has acknowledged this issue. They state that it is limited to a Denial of Service attack on Word 2000 and that code execution is not possible.
Denial of Service is clearly not as critical as other recent issues. Looks like this targeted attack was flawed.
Update Feb 14, 4:30pm
Further analysis shows this is likely not limited to denial of service. See Exploit Targeting Unpatched Word Vulnerability Spotted (Follow-up)
|
|
Submit your own comments / message for this post