MS12-046:Microsoft Visual Basic for Applications の脆弱性により、リモートでコードが実行される (2707960)
2012年7月11日
危険度: : 高
CVE識別番号: CVE-2012-1854
概要
This update resolves the vulnerability that exists in the handling of DLL files in Microsoft Visual Basic for Applications. Attackers exploiting this vulnerability must convince potential targets to open a specially crafted MS Office file. Currently logged on users who have lesser administrator privileges are less impacted by effects of an exploit.
トレンドマイクロの対策
詳しい情報については以下のサイトをご参照ください。
影響を受けるソフトウェア
- Microsoft Office 2003 Service Pack 3
- Microsoft Office 2007 Service Pack 2
- Microsoft Office 2007 Service Pack 3
- Microsoft Office 2010 (32-bit editions)
- Microsoft Office 2010 Service Pack 1 (32-bit editions)
- Microsoft Office 2010 (64-bit editions)
- Microsoft Office 2010 Service Pack 1 (64-bit editions)
- Microsoft Visual Basic for Applications