CVE-2006-1311: Critical severity Microsoft Learning Essentials vulnerability
The RichEdit component in Microsoft Windows 2000 SP4, XP SP2, and 2003 SP1; Office 2000 SP3, XP SP3, 2003 SP2, and Office 2004 for Mac; and Learning Essentials for Microsoft Office 1.0, 1.1, and 1.5 allows user-assisted remote attackers to execute arbitrary code via a malformed OLE object in an RTF file, which triggers memory corruption.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2006-1311?
CVE-2006-1311 is classified as a critical vulnerability due to the potential for remote code execution.
How do I fix CVE-2006-1311?
To fix CVE-2006-1311, apply the available security patches from Microsoft for the affected software versions.
Which versions of Microsoft Office are affected by CVE-2006-1311?
CVE-2006-1311 affects Microsoft Office 2000 SP3, XP SP3, and 2003 SP2.
Can CVE-2006-1311 be exploited without user interaction?
No, CVE-2006-1311 requires user assistance to exploit, such as opening a malicious RTF file.
What platforms are impacted by CVE-2006-1311?
CVE-2006-1311 affects Windows 2000 SP4, XP SP2, and 2003 SP1, along with various versions of Microsoft Office and Learning Essentials.