Home / bulletins

Microsoft Security Advisory (2896666): Vulnerability in Microsoft Graphics Component Could Allow Remote Code Execution - Version: 1.1

Posted on 12 November 2013

Revision Note: V1.1 (November 12, 2013): Clarified the scope of the active attacks, clarified affected software configurations, and revised workarounds. These are informational changes only. Customers should re-evaluate the applicability of the suggested actions for their environments based on the updated information.
Summary: Microsoft is investigating private reports of a vulnerability in the Microsoft Graphics component that affects Microsoft Windows, Microsoft Office, and Microsoft Lync. Microsoft is aware of targeted attacks that attempt to exploit this vulnerability through Microsoft Office 2007 software installed on Windows XP Service Pack 3.

Link

 

TOP