You are here: silicon.com > Software > Malware

Malware

Alert over "extremely critical" Word flaw

Secunia warns of malicious attack exploit...

Tags: microsoft, word 2000, secunia, word

By Dawn Kawamoto

Published: 5 September 2006 17:15 GMT

An "extremely critical flaw" in Microsoft Word 2000 is currently being exploited by malicious attackers, which could lead to remote execution of code on a user's system, security researcher Secunia advised on Tuesday.

The vulnerability affects systems running Windows 2000 and occurs when processing malicious Word 2000 documents, according to Secunia's security advisory.

Security company Symantec, which several days ago detected the exploit, Trojan MDropper.Q, noted that it uses a two-step attack.

Trojan MDropper.Q exploits the Microsoft Word vulnerability to drop another file, a new variant of Backdoor.Femo, according to a security advisory by Symantec.

Symantec's advisory stated: "As with other recent [Microsoft] Office vulnerabilities, documents incorporating the exploit code must be opened with a vulnerable copy of Microsoft Word 2000 for it to work. As such, it makes the vulnerability unsuitable for the creation of self-replicating network worms."

Microsoft has not yet issued a patch for the vulnerability, and users are advised to forgo opening untrusted documents.

This latest exploit of an Office vulnerability follows on the heels of another, similar malicious attack in June. In that particular case, users' systems would become infected when opening a malicious Excel document called "okN.xls". That malicious file contained the Trojan horse Mdropper.J, which then dropped the Booli.A program on a user's system. Booli.A would then download more malicious files to the user's PC.

Dawn Kawamoto writes for CNET News.com

  1. Zones
  2. Management
  3. Networks
  4. Software
  5. IT Services
  6. Hardware
  1. Verticals
  2. Public Sector
  3. Financial Services
  4. Retail & Leisure

Tim Ferguson Exclusive: Former MySQL boss Marten Mickos talks open source Why Microsoft could become one of the "biggest friends of open source" and why Oracle getting its hands on MySQL could be "one of the biggest open source coups ever"...

Naked CIO Naked CIO: Cloud computing more expensive than we thought? Smart IT leaders will examine the impact of how they pay for tech


  • Jobs
SEO Coordinator

Responsibilities: Generate and implement strategic client work plans and linking reports Maintain contact with clients via telephone and email and ...

Backup Systems Engineer - Symantec Netbackup - Glasgow

Backup Systems Engineer - Symantec Netbackup - Glasgow. Backup Systems Engineer with Symantec Netbackup experience required for my Glasgow based ...

Information Security Analyst (Attack Monitoring/Data Leakage/CISSP/CEH)

You must have previous experience in a dedicated vulnerability management function where you have been responsible for all potential attacks on a ...

Agenda Setters 2009
Welcome to the ninth annual Agenda Setters poll – silicon.com's list of the top 50 most influential individuals in the technology and IT industries, from techies and CIOs to entrepreneurs and business leaders. Find out more in our latest special report.





Quick Sitemap Links: