CVE-2011-0979: Input Validation
Microsoft Excel 2002 SP3, 2003 SP3, 2007 SP2, and 2010; Office 2004, 2008, and 2011 for Mac; Open XML File Format Converter for Mac; and Excel Viewer SP2 do not properly handle errors during the parsing of Office Art records in Excel spreadsheets, which allows remote attackers to execute arbitrary code via a malformed object record, related to a "stray reference," aka "Excel Linked List Corruption Vulnerability."
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2011-0979?
CVE-2011-0979 is rated as a critical vulnerability allowing remote code execution.
How do I fix CVE-2011-0979?
To fix CVE-2011-0979, users should apply the latest software updates provided by Microsoft for their affected applications.
What software is affected by CVE-2011-0979?
CVE-2011-0979 affects various versions of Microsoft Excel and Microsoft Office, including Office for Mac.
Can CVE-2011-0979 be exploited remotely?
Yes, CVE-2011-0979 can be exploited remotely through specially crafted Excel files.
What are the consequences of exploiting CVE-2011-0979?
Exploitation of CVE-2011-0979 could allow an attacker to execute arbitrary code on the affected system.