First published: Thu Feb 10 2011(Updated: )
Use-after-free vulnerability in Microsoft Office XP SP3, Office 2003 SP3, Office 2007 SP2, Office 2004 and 2008 for Mac, and Open XML File Format Converter for Mac allows remote attackers to execute arbitrary code via malformed shape data in the Office drawing file format, aka "Microsoft Office Graphic Object Dereferencing Vulnerability."
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Excel for Mac | =2007 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2011-0977 is classified as a critical severity vulnerability due to its potential for remote code execution.
To fix CVE-2011-0977, users should apply the latest security updates provided by Microsoft for affected Office versions.
CVE-2011-0977 affects Microsoft Office XP SP3, Office 2003 SP3, Office 2007 SP2, and versions of Office for Mac.
Yes, CVE-2011-0977 can be exploited remotely by attackers through malformed shape data in Office drawing files.
The risks of CVE-2011-0977 include unauthorized remote code execution that can compromise system integrity and data security.