CVE-2010-0823: Code Injection
Unspecified vulnerability in Microsoft Office Excel 2002 SP3, 2003 SP3, 2007 SP1 and SP2; Office 2004 for mac; Office 2008 for Mac; Open XML File Format Converter for Mac; Office Excel Viewer SP1 and SP2; and Office Compatibility Pack for Word, Excel, and PowerPoint 2007 File Formats SP1 and SP2; allows remote attackers to execute arbitrary code via a crafted Excel file, aka "Excel Memory Corruption Vulnerability," a different vulnerability than CVE-2010-1247 and CVE-2010-1249.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2010-0823?
CVE-2010-0823 has been classified as a critical vulnerability that can potentially allow remote code execution.
How do I fix CVE-2010-0823?
To mitigate CVE-2010-0823, users should apply the latest security patches provided by Microsoft for the affected Office products.
Which versions of Microsoft Office are affected by CVE-2010-0823?
CVE-2010-0823 affects Microsoft Office Excel 2002 SP3, 2003 SP3, 2007 SP1 and SP2, and several versions of Office for Mac.
What type of vulnerability is CVE-2010-0823?
CVE-2010-0823 is an unspecified vulnerability in Microsoft Office Excel that could lead to remote code execution.
Is there a workaround for CVE-2010-0823?
There are no formal workarounds for CVE-2010-0823, and the best action is to update to the latest patched version of the affected software.