Trend Micro Security

MS12-031:Microsoft Visio Viewer 2010 の脆弱性により、リモートでコードが実行される (2597981)

  危険度: :
  CVE識別番号: CVE-2012-0018

  概要

A vulnerability in the way MS Visio handles specially crafted files could allow an attacker to take control of the vulnerable system. Logged on users that have lesser privileges on the affected system are less impacted by the effects of this vulnerability.

As a workaround, Microsoft recommends to block ActiveX Controls and Active Scripting to help block execution of specially crafted files automatically. More information on this workaround is found in the Microsoft bulletin.

  トレンドマイクロの対策

  影響を受けるソフトウェア

  • Microsoft Visio Viewer 2010 (32-bit Edition)
  • Microsoft Visio Viewer 2010 Service Pack 1 (32-bit Edition)
  • Microsoft Visio Viewer 2010 (64-bit Edition)
  • Microsoft Visio Viewer 2010 Service Pack 1 (64-bit Edition)