Gravedad: Crítico
  Identificadores de CVE : CVE-2008-3005,MS08-043
  Fecha recomendada: 04 de febrero de 2011

  Descripción

Array index vulnerability in Microsoft Office Excel 2000 SP3 and 2002 SP3, and Office 2004 and 2008 for Mac allows remote attackers to execute arbitrary code via an Excel file with a crafted array index for a FORMAT record, aka the "Excel Index Array Vulnerability."

  Revelación de la información

Trend Micro Deep Security shields networks through Deep Packet Inspection (DPI) rules. Trend Micro customers using OfficeScan with Intrusion Defense Firewall (IDF) plugin are also protected from attacks using these vulnerabilities. Please refer to the filter number and filter name when applying appropriate DPI and/or IDF rules.

  Software y versión afectados

  • microsoft office 2000
  • microsoft office 2002
  • microsoft office 2004
  • microsoft office 2008