October 11, 2007
2:13 pm

The trend for exploiting vulnerabilities around the same time as Microsoft's monthly Patch Tuesday update continues.

Hackers have crafted a new Word exploit based on a memory corruption vulnerability addressed by Microsoft on Tuesday. The flaw was already exploited prior to the release of the fix, according to Microsoft.

Until this week the critical flaw had only been exploited in targeted attacks, but it's now getting wider play.

Symantec reports that the vulnerability is now being exploited in more widespread attacks. Malformed Word documents doing the rounds contain shell code and three pieces of malware. The malware package is unusual in that it was created using the Word for Macintosh format instead of the standard Windows (OLE) format.

Full Article

Microsoft, Microsoft Office, Word, Exploit, Vulnerability, Bug, Hacker, Word Exploit

Loading

Contextual Related Posts:

No followup yet

Leave a Response

Comment Preview
« Wii update enhances Internet, adds USB keyboard supportP2P researchers “Use blocklist else you will be tracked” »
Feed Icon

Subscribe via RSS or email: