First published: Wed Oct 13 2010(Updated: )
Microsoft Excel 2002 SP3, Office 2004 and 2008 for Mac, and Open XML File Format Converter for Mac do not properly validate record information, which allows remote attackers to execute arbitrary code via a crafted Excel document, aka "Ghost Record Type Parsing Vulnerability."
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Open XML File Format Converter | ||
Microsoft Office | =2008 | |
Microsoft Office | =2004 | |
Microsoft Office Excel | =2002-sp3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2010-3242 has a critical severity rating due to the potential for remote code execution.
To fix CVE-2010-3242, users should apply the latest security updates provided by Microsoft for the affected software.
CVE-2010-3242 affects Microsoft Excel 2002 SP3, Microsoft Office 2004 and 2008 for Mac, and Microsoft Open XML File Format Converter for Mac.
CVE-2010-3242 allows remote attackers to execute arbitrary code by exploiting crafted Excel documents.
CVE-2010-3242 was reported by Microsoft as a security vulnerability in their Excel and Office products.