Skip to main content

Security Flaw found in MS Office 2007

Researchers have discovered a "highly critical" security flaw in newly released Office 2007, despite Microsoft's efforts to deliver its most secure version yet of the productivity software.

Despite Microsoft's efforts to lock down the update, eEye finds a hole that could let an outsider run malicious software on a PC. So what else is new? Aren't we tired of reading about MS software products are not secure, Windows Vista has security flaws within 1-month of product launch (Experts sceptical on Vista security) and then this...

The consumer version of Office 2007, which launched only four weeks ago, is designed to withstand higher scrutiny by malicious code writers, as Microsoft subjected the software to code auditors as part of its security development lifecycle.

But researchers at eEye Digital Security found a file format vulnerability in Microsoft Office Publisher 2007, which could be exploited to let an outsider run code on a compromised PC.

"We were surprised we could find a flaw so quickly (after Office 2007 launched) and one that was part of their core products," said Ross Brown, eEye's chief executive.

An attacker could create a malicious publisher file, he said. Once the recipient opens the file, he or she could find the system infected and susceptible to a remote attack.

Full story here...

Comments

Popular posts from this blog

OpenProj - FREE alternative to Microsoft Project I wanted to share with all of you about Projity's important announcement last week at LinuxWorld. Projity announced the release of OpenProj, a FREE (yeah, another FREE software) and open source replacement of Microsoft Project. OpenProj is available on Windows, Linux, Unix or Mac and is interoperable with Microsoft Project. The best thing is, it even opens existing MS Project files! How cool is that? I read on OpenProj website that OpenProj has been downloaded on an average every 35 seconds around the clock at http://www.projity.com since they launched and made the software available last week. OpenProj is now in the 99.99th percentile for activity on Sourceforge.net and is quickly becoming one of the most used open source solutions worldwide. The OpenProj folks are expecting about 11 million worldwide users and in my opinion, this has been an excellent start for them. MS Project has been a key strategic solution for Micro...
In early April 2006, I sign-up for the Excellerated Business School for Entrepreneurs (BSE) after a preview session held in Singapore by Executive-Directions. The seminar was held from 15 April to 23 April 2006 in Subang Jaya Hotel in Kuala Lumpur, Malaysia. The BSE in KL was organized by GlobeSL Sdn Bhd. I left Singapore on 14 April via Transtar , the only 1st class coach service which has 16 seats to create a lot of room for your leg. They also provide hot meal during the journey with hot drinks on demand. The seats are equipped with a massage chair, a personal in-flight entertainment system on LCD screen, PC Games and the F&B Attendant will provide anything that you ask for. From newspaper, magazines, blanket, hot/cold drinks, a new set of earphones for the entertainment system... they have it all. They are most courteous and polite at all times. I truly enjoy the Transtar service. For SG$50 from Singapore to KL, it's worth it. I arrived in Subang Jaya Hotel at about 10p...

Contextual Thinking

Contextual Thinking: The Key to Success in Communicating Innovation Proposals by Hector Ramos, COE Partners You may have heard and read much in the last few years regarding creativity and innovation.. Or you may even have attended a creativity workshop that you found interesting, fun and helped you come up with some new ideas. Now your current employer may be requiring innovative input. However, you find that your suggestions are mostly ignored or frowned upon. This is mainly because nobody has told you the ‘ the secret ’. In the case of creativity and innovation, not only do managers have different ideas of what they mean, but they find it difficult to express them in a consistent manner. This results in resorting to clichés such as out-of-the box thinking, or ideas producing bottom-line results. If there is such a variety in opinion, what can you do as a potential or current employee to provide the required creative and innovation input? 7 SIMPLE STEPS TO DEVELOP CREATIVE AND INNOV...