On GameSpot: The top games of the 2000s so far?
BNET Business Network:
BNET
TechRepublic
ZDNet

By Dawn Kawamoto
Posted on ZDNet News: Feb 5, 2007 3:20:00 PM

Microsoft is warning of an Excel-focused zero-day attack that affects several versions of its Office software, including one for Macs.

In its security advisory issued Friday, Microsoft warns people of a "very limited" zero-day attack that takes advantage of vulnerabilities in the Excel spreadsheet program.

The "extremely critical" Excel vulnerabilities are found in Microsoft Office 2000, Office 2003 and Office XP, as well as in Office 2004 for computers running Apple's Mac OS, according to a separate advisory from security company Secunia.

Attackers are sending e-mails with malicious Excel attachments and are hosting Web sites that house Office files that attempt to take advantage of the security flaws, according to Microsoft. Once an attacker exploits the vulnerabilities, they can gain control of a person's system remotely.

Microsoft noted that the vulnerabilities may extend beyond Excel.

"While we are currently only aware that Excel is the current attack vector, other Office applications are potentially vulnerable," Microsoft said in its advisory.

Microsoft is telling people to avoid opening or saving Office files that come from distrusted or unknown sources, or files that are e-mailed unexpectedly from trusted sources.

Earlier this month, Microsoft issued patches for five security flaws in Excel as part of its monthly patch cycle. In June, Excel was hit with another zero-day attack.

A zero-day attack is one that exposes software bugs before they have been patched.

SponsoredWhite Papers, Webcasts, and Downloads

  • Talkback
  • Most Recent of 20 Talkback(s)
Right, but they are fixed much faster, and there has NEVER been
OpenOffice exploit in the wild. That is the point. There are MS Office exploits in the wild, one after the other.... (Read the rest)
Posted by: DonnieBoy Posted on: 02/07/07 You are currently: a Guest | | Terms of Use
Microsoft warns Excel under zero-day attack  Loverock Davidson | 02/05/07
Right, all security vulnerabilities are not a problem, just that users  DonnieBoy | 02/05/07
Exactly  Loverock Davidson | 02/05/07
MS warns you about everything, and users get used to clicking, rendering  DonnieBoy | 02/05/07
Wrong  Loverock Davidson | 02/05/07
How about OOo?  Graham Fluet | 02/05/07
Looking for logic in your dribblings  ejhonda | 02/05/07
What part didn't you understand?  Loverock Davidson | 02/05/07
Right, a million ifs, ands, and buts, about how you might avoid problems.  DonnieBoy | 02/05/07
Avoiding is the best way  Loverock Davidson | 02/05/07
These flaws in Office are one after the other. Time to upgrade to the new  DonnieBoy | 02/05/07
You left out a feature  Loverock Davidson | 02/05/07
This is a Microsoft problem as they do not use a standard document format  DonnieBoy | 02/05/07
Who says they have to?  Loverock Davidson | 02/05/07
Do not talk about compatibility 'cause...  Logics | 02/05/07
Oh, Lovey, how you pick your arguments  mlindl | 02/06/07
That's a bit lofty.  Henaway | 02/05/07
Right, there is also no proof yet that Global Warming really exists.  DonnieBoy | 02/05/07
Both have flaws.  ceward_z | 02/05/07
Right, but they are fixed much faster, and there has NEVER been  DonnieBoy | 02/07/07

What do you think?

Premier Vendor Content Whitepapers, webcasts & resources from our Power Center Sponsors
Keep Up With The Latest In Document Management with The DocuMentor.
Doc delivers the scoop on today's enterprise content management, printer maintenance, and all other issues related to document management. It's the DocuMentor Blog.
Learn more >>
Reduce risk. Reduce complexity. Increase reliability.
A simplified IT environment isn't just less complex. It's also more reliable. Standardize on a single Linux platform with SUSE Linux Enterprise from Novell, and get the world's most interoperable Linux
Learn more >>
Microsoft Dynamics CRM Online - Free Six-Month Trial for Eligible Organizations
Microsoft Dynamics CRM Online provides fast online access, simple contact management and better sales performance for a low monthly cost - the best value on the market today.
Learn more about the free, six-month trial offer>>
The best support in the Linux business
If Linux is going to power your mission-critical applications, you'd better have the best support known to business. Novell was rated the top provider of Linux technical support.
Learn more >>
The more you simplify, the more you save
When you transition from your existing Red Hat environment to SUSE Linux Enterprise from Novell, you can recognize dramatic cost savings, perhaps as much 50%
Learn more >>
Learn more about tools to grow your business
The Business Essentials Guide provides you useful tools and templates to help grow your business and save you time with automated shipping solutions.
Save time with the UPS Business Essentials Guide
advertisement

White Papers, Webcasts, and Downloads

Meet Doc