Home / bulletins

MS11-089 - Important : Vulnerability in Microsoft Office Could Allow Remote Code Execution (2590602) - Version: 1.1

Posted on 17 December 2011

There is an newer version: MS11-089 - Version: 1.2

Important

Severity Rating: Important
Revision Note: V1.1 (December 16, 2011): Expanded the list of non-affected software and revised the Update FAQ to help clarify that this update may be offered to non-affected software when the vulnerable shared component of Microsoft Office is present.
Summary: This security update resolves a privately reported vulnerability in Microsoft Office. The vulnerability could allow remote code execution if a user opens a specially crafted Word file. An attacker who successfully exploited this vulnerability could gain the same user rights as the logged-on user. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.

Link

Other versions

 

TOP