Re: Symantec Security Response SecBul-10042001, Revision1, Malfor med Microsoft Excel or PowerPoint documents bypass Microsoft macro securi ty features

From: Paul Wakeford (Paul.Wakeford@NEXTRA.CO.UK)
Date: 10/09/01


Message-ID:  <011b01c150e2$93e05c70$8a45bcc0@paul>
Date:         Tue, 9 Oct 2001 17:51:01 +0100
From: Paul Wakeford <Paul.Wakeford@NEXTRA.CO.UK>
Subject:      Re: Symantec Security Response SecBul-10042001, Revision1, Malfor med Microsoft Excel or PowerPoint documents bypass Microsoft macro securi ty features
To: NTBUGTRAQ@LISTSERV.NTBUGTRAQ.COM

It's the same with Office2000 (at least with SR1a) but Microsoft claim
it is not an ant-piracy measure, see
http://support.microsoft.com/support/kb/articles/Q255/4/99.ASP for
details.

Paul

> -----Original Message-----
> From: Windows NTBugtraq Mailing List
> [mailto:NTBUGTRAQ@LISTSERV.NTBUGTRAQ.COM] On Behalf Of Alan Claver
> Sent: Saturday 06 October 2001 15:48
> To: NTBUGTRAQ@LISTSERV.NTBUGTRAQ.COM
> Subject: Re: Symantec Security Response SecBul-10042001,
> Revision1, Malfor med Microsoft Excel or PowerPoint documents
> bypass Microsoft macro securi ty features
>
>
> > Additionally, Microsoft has released a security bulletin,
> > MS01-050, for this issue with links to product security
> > patches. Users of individual Microsoft Office products as
> > well as bundled Microsoft Office suites should download and
> > install the appropriate security patches to secure their
> > applications:
>
> Although not mentioned in this recent message, it's important
> to alert users
> of Office XP (2002) that in order to apply the security
> patches, they must
> have access to the installation media (CD-ROM, network share)
> before the
> patch will be installed.
>
> Personally, I can't understand this. Security alerts should
> not a seen as an
> appoportunity push anti-piracy agendas.
>
> ==============================================================
> ==============
> Delivery co-sponsored by Trend Micro, Inc.
> ==============================================================
> ==============
> BEST-OF-BREED ANTIVIRUS SOLUTION FOR MICROSOFT EXCHANGE 2000
> Earn 5% rebate on licenses purchased for Trend Micro ScanMail for
> Microsoft Exchange 2000 between October 1 and November 16. ScanMail
> ensures 100% scanning of inbound and outbound traffic and provides
> remote software management. For program details or to download your
> 30-day FREE evaluation copy:
> http://www.antivirus.com/banners/tracking.asp?si=53&BI;=245&UL
;=http://www.ant
ivirus.com/smex2000_rebate



Relevant Pages

  • [NT] Cumulative Security Update for Internet Explorer (MS04-025)
    ... Get your security news from a reliable source. ... * Microsoft Windows NT Workstation 4.0 Service Pack 6a ... Navigation Method Cross-Domain Vulnerability ...
    (Securiteam)
  • SecurityFocus Microsoft Newsletter #75
    ... Microsoft's Internet Security & Acceleration Server with fault-tolerance ... The Microsoft UPnP Vulnerability ... Relevant URL: ...
    (Focus-Microsoft)
  • SecurityFocus Microsoft Newsletter #120
    ... Strengthening Network Security: FREE Guide Network security is a ... MICROSOFT VULNERABILITY SUMMARY ... Microsoft Windows File Protection Signed File Replacement... ... PlatinumFTPServer Information Disclosure Vulnerability ...
    (Focus-Microsoft)
  • Re: A 6% fix from Microsoft Security Bulletin MS03-040 - 828750
    ... Now if the geeks over at Microsoft could get "infected" with some of this ... The Internet is already mind blowing in the way it can bring people ... that creates an unacceptable risk of security compromise and we need to shut ... down all Internet browsing with IE. ...
    (microsoft.public.security)
  • Re: A 6% fix from Microsoft Security Bulletin MS03-040 - 828750
    ... Now if the geeks over at Microsoft could get "infected" with some of this ... The Internet is already mind blowing in the way it can bring people ... that creates an unacceptable risk of security compromise and we need to shut ... down all Internet browsing with IE. ...
    (microsoft.public.security.virus)