First published: Thu Sep 15 2011(Updated: )
Use-after-free vulnerability in Microsoft Excel 2003 SP3 allows remote attackers to execute arbitrary code via a crafted spreadsheet, aka "Excel Use after Free WriteAV Vulnerability."
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Office Excel | =2003-sp3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2011-1986 is considered critical due to its potential to allow remote code execution.
To fix CVE-2011-1986, apply the security update provided by Microsoft for Excel 2003 SP3.
CVE-2011-1986 specifically affects Microsoft Excel 2003 SP3.
CVE-2011-1986 can be exploited through crafted spreadsheets that trigger the use-after-free vulnerability.
A temporary workaround for CVE-2011-1986 is to limit the ability to open untrusted Excel files until the update is applied.