file word flaw
Microsoft patches 'the class of 2007'
News The Word flaw had also been used in cyber attacks, it said. Last month's Microsoft patches included a fix for a zero-day flaw in Windows that also affected Vista. This includes an expected patch for a flaw in the Windows domain name system, or DNS. [09 May 2007]
Zero-day attack strikes Office
News Word of the new flaw came a day after Microsoft released updates for nine other Office-related vulnerabilities. When a user opens a rigged Word file, it may corrupt system memory in such a way that an attacker could gain complete control over the... [16 Feb 2007]
Phone-crashing bugs found in Windows Mobile
News Symantec and the French Security Incident Response Team, or FrSirt, say they have spotted a fifth zero-day flaw in the word-processing application. In addition to the Windows Mobile issues, Microsoft is also investigating a report of yet another... [01 Feb 2007]
Attackers hitting yet another Word flaw
News An attacker could exploit this issue by enticing a victim to open a malicious Word file," it said. Another previously undocumented, yet-to-be-patched security vulnerability in Microsoft Word is actively being exploited in cyber attacks. [26 Jan 2007]
Cyber attackers exploiting Word flaw
News An attacker could exploit the flaw by hosting a website with a malicious Word file or send an email with the file as an attachment. An attacker could rig a Word file in such a way that he would gain complete control over a vulnerable PC when the... [06 Dec 2006]
Attacks still battering unpatched Windows flaws
News A flaw in Word has gone unpatched since early this month and a flaw in an IE ActiveX control called daxctle.ocx first surfaced on 14 September. Microsoft issued a rare, out-of-cycle Windows patch on Tuesday that fixed one flaw but attacks through... [28 Sep 2006]
Security group issues emergency IE patch
News A group of security professionals has created a third-party fix for a recently discovered Internet Explorer flaw that's increasingly being used in cyber attacks. The flaw lies in the way IE 6 handles certain graphics. [25 Sep 2006]
Alert over "extremely critical" Word flaw
News An "extremely critical flaw" in Microsoft Word 2000 is currently being exploited by malicious attackers, which could lead to remote execution of code on a user's system, security researcher Secunia advised on Tuesday. [05 Sep 2006]
Cyber attack targets unpatched Excel flaw
News Word of the outbreak and of the new flaw comes just days after Microsoft released 12 security bulletins with fixes for 21 vulnerabilities in several of its products, including Office. In addition, the monthly set of patches Microsoft released on... [19 Jun 2006]
Safari users warned of Mac OS X flaw
News A serious flaw in Mac OS X could be a conduit for attackers to install malicious code on computers running the Apple software, experts warned on Tuesday. Apple is developing a patch for the flaw, according to a company representative. [22 Feb 2006]
Two new WMF flaws emerge
News Just days after Microsoft rushed out a patch to fix a critical Windows flaw related to the processing of Windows Meta File (WMF) images, two more problems with the component were flagged. Cyber criminals were taking advantage of that flaw to attack... [10 Jan 2006]
Apple releases more big cat security patches
News The Safari web browser has also been updated, fixing a flaw that could allow arbitrary command execution by clicking on a link in a maliciously crafted rich text file, and a bug that could mean Safari sends data to the wrong websites. [16 Aug 2005]
Office has "kindergarten crypto mistake"
News The data protection feature in Microsoft Word and Excel documents has a major flaw that could allow snoopers to decode password-protected files, a security researcher has warned. Microsoft said on Thursday that it has begun investigating the flaw. [21 Jan 2005]
Hackers turn to dictionary to invade Cisco WLANs
News I discovered one small reference to a dictionary attack vulnerability against user passwords, which I felt was insufficient notification for such a critical flaw in the protocol. Unlike LEAP, the new protocol does not allow hackers to limit the... [15 Apr 2004]
Microsoft issues patch for Word crash bug
News The update, available for download now, primarily corrects a flaw that can cause Word 2003 to freeze or crash when trying to print or save a document that includes an object based on Object Linking and Embedding. [28 Jan 2004]
