[Full-disclosure] Microsoft Word 0-day Vulnerability (September) FAQ document available



New FAQ document about the recently discovered 0-day vulnerability in Microsoft Word is available.
This vulnerability has been reported especially in Office 2000 on Windows 2000 machines.
Possible other Office versions are affected as well.

This vulnerability is being exploited by Trojan from Mdropper family, but the newest information states dependencies to Mofei worm
(reported in the wild in2003 already).
Names as W32/MoFei.worm, W32.Femot.Worm etc. has been assigned.

The document entitled as Microsoft Word 0-day Vulnerability FAQ - September 2006, CVE-2006-xxxx is located at my SecuriTeam Blogs section,
http://blogs.securiteam.com/?p=586

The CVE name will be added to the document when it is available.

- Juha-Matti

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/



Relevant Pages

  • Re: I love IP Tables....
    ... customers that they isolate their video machines to the maximum extent ... possible with suitable firewall and AV protection on the other machines ... By contrast it is rare for a critical remote vulnerability to be known for more than 3 days in Linux distributions without having the update to fix it released. ... ONE reason Linux is MORE secure than Windows is the multiple eyes. ...
    (Fedora)
  • [Full-disclosure] Major updates to Excel 0-day Vulnerability FAQ at SecuriTeam Blogs
    ... Several updates to First Microsoft Excel 0-day Vulnerability FAQ document at ... Several exploits for this vuln and other Excel issues has been released recently ... to the FAQ document title was added in June to clarify the situation after several Excel vuln disclosures. ...
    (Full-Disclosure)
  • New PowerPoint 0-day and Trojan - FAQ document available
    ... I have constructed a FAQ document about the recent 0-day vulnerability in Microsoft PowerPoint disclosed on Saturday 19th Aug. ... World renowned security experts reveal tomorrow's threats today. ... Featuring 36 hands-on training courses and 10 conference tracks, networking opportunities with over 2,500 delegates from 40+ nations. ...
    (Incidents)
  • Microsoft Word 0-day Vulnerability (September) FAQ document available
    ... New FAQ document about the recently discovered 0-day vulnerability in Microsoft Word is available. ... This vulnerability has been reported especially in Office 2000 on Windows 2000 machines. ...
    (Bugtraq)
  • Major updates to Excel 0-day Vulnerability FAQ at SecuriTeam Blogs
    ... Several updates to First Microsoft Excel 0-day Vulnerability FAQ document at ... Several exploits for this vuln and other Excel issues has been released recently ... to the FAQ document title was added in June to clarify the situation after several Excel vuln disclosures. ...
    (Bugtraq)

Quantcast