First published: Wed Apr 13 2011(Updated: )
Microsoft Excel 2002 SP3 and 2003 SP3, Office 2004 and 2008 for Mac, and Open XML File Format Converter for Mac allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via crafted record information in an Excel file, aka "Excel Memory Corruption Vulnerability."
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Office Excel | =2002-sp3 | |
Microsoft Office Excel | =2003-sp3 | |
Microsoft Office | =2004 | |
Microsoft Office | =2008 | |
Microsoft Open XML File Format Converter |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2011-0103 has a severity rating of high due to the potential for remote code execution.
To fix CVE-2011-0103, you should apply the latest security updates provided by Microsoft for affected versions of Excel.
CVE-2011-0103 affects Microsoft Excel 2002 SP3, 2003 SP3, Office 2004, Office 2008 for Mac, and the Open XML File Format Converter for Mac.
CVE-2011-0103 can be exploited through specially crafted Excel files that lead to memory corruption.
A potential workaround for CVE-2011-0103 is to avoid opening Excel files from untrusted sources.