Microsoft confirms Windows-Word attacks - ChatsUSA
ChatsUSA
 
ChatsUSA » ChatsUSA Technology » Technology Talk » Tech News » Microsoft confirms Windows-Word attacks Reply
 
Microsoft confirms Windows-Word attacks
03-24-2008, 10:31 AM     #1 (permalink)
 
ChatsUSA's Avatar
 
Management
Posts: 8,675

Points: 800,034

 
Join Date: Feb 2005
Age: 3

Microsoft confirms Windows-Word attacks

Microsoft Corp. yesterday warned of a critical vulnerability that affects users of Word running on Windows 2000, XP and Server 2003 SP1 -- several weeks after one security company first reported an exploit and a day after a second vendor confirmed ongoing attacks.

In an advisory posted Friday, Microsoft acknowledged "public reports of very limited, targeted attacks" that exploit a bug in the Microsoft Jet Database Engine, a Windows component that provides data access to applications including Microsoft Access and Visual Basic.

According to Symantec Corp., however, the attacks Microsoft described used malicious Word 2000, 2002, 2003 and 2007 documents, which in turn call up the vulnerable Jet .dll.

"We believe that the issue being described [by Microsoft] is one described on March 20, 2008 by Elia Florio of Symantec Security Response," the security firm told customers of its DeepSight threat analysis network on Saturday. "He notes a recent discovery, by Panda Security, of a possible zero-day exploit observed in the wild."

News Source: ComputerWorld

Read full story...



More...
 
  Reply With Quote
 

Reply


Thread Tools


Smilies are On
[IMG] code is On
HTML code is On
Trackbacks are On
Pingbacks are On
Refbacks are On

Points Per Thread View: 1
Points Per Thread: 15
Points Per Reply: 5


1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39
ChatsUSAArchiveLinksJSkelton.comMyspace CommentsTopLive Chat
Powered by vBulletin Powered by vBulletin® Version 3.7.0
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
SEO by vBSEO 3.2.0 RC5
Terms of Service