Home / bulletins MS08-008 – Critical: Vulnerability in OLE Automation Could Allow Remote Code Execution (947890) - Version:1.1
Posted on 18 February 2008
There is an newer version: MS08-008 - Version: 1.2
Severity Rating: Critical - Revision Note: V1.1 (February 13, 2008): Bulletin updated: The security update for Visual Basic 6.0 Service Pack 6 (KB946235) now lists MS07-043 as a previous Bulletin that this update replaces.Summary: This critical security update resolves a privately reported vulnerability. This vulnerability could allow remote code execution if a user viewed a specially crafted Web page. The vulnerability could be exploited through attacks on Object Linking and Embedding (OLE) Automation. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.
Other versions
- MS08-008 - Version: 1.0
- MS08-008 - Version: 1.2
- MS08-008 - Version: 1.1
- MS08-008 - Version: 1.2