First published: Thu Feb 10 2011(Updated: )
Microsoft Excel 2002 SP3 and 2003 SP3, Office 2004 and 2008 for Mac, and Open XML File Format Converter for Mac do not properly parse Office Art objects, which allows remote attackers to execute arbitrary code via vectors related to a function pointer, aka "Excel Dangling Pointer Vulnerability."
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Office Excel | =2002-sp3 | |
Microsoft Office Excel | =2003 | |
Microsoft Office Excel | =2003-sp3 | |
Microsoft Office | =2004 | |
Microsoft Office | =2008 | |
Microsoft Open XML File Format Converter |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2011-0980 is considered critical due to its potential to allow remote code execution.
To fix CVE-2011-0980, update Microsoft Excel or Office to the latest available service pack or patch.
CVE-2011-0980 affects Microsoft Excel 2002 SP3, 2003 SP3, Office 2004, Office 2008 for Mac, and Open XML File Format Converter for Mac.
CVE-2011-0980 is a dangling pointer vulnerability related to improper parsing of Office Art objects.
Yes, CVE-2011-0980 can be exploited remotely by attackers through malicious documents.