![]() Microsoft Excel Viewer must be updated to a supported service pack level (Excel Viewer 2007 Service Pack 3) before installing this update. This update is available via Windows Update. ![]() Microsoft Office Compatibility Pack Service Pack 3 (2760588)įor Microsoft Office Excel 2007, in addition to security update package 2760583, customers also need to install the security update for Microsoft Office Compatibility Pack (2760588) to be protected from the vulnerabilities described in this bulletin. Microsoft Excel 2010 Service Pack 2 (64-bit editions) (2760597) Microsoft Office 2010 Service Pack 2 (64-bit editions) Microsoft Excel 2010 Service Pack 1 (64-bit editions) (2760597) ![]() Microsoft Office 2010 Service Pack 1 (64-bit editions) Microsoft Excel 2010 Service Pack 2 (32-bit editions) (2760597) Microsoft Office 2010 Service Pack 2 (32-bit editions) Microsoft Excel 2010 Service Pack 1 (32-bit editions) (2760597) Microsoft Office 2010 Service Pack 1 (32-bit editions) Microsoft Excel 2007 Service Pack 3 (2760583) Microsoft Excel 2003 Service Pack 3 (2810048) To determine the support life cycle for your software version or edition, see Microsoft Support Lifecycle.Īffected Software Microsoft Office Suite and Other Software Other versions or editions are either past their support life cycle or are not affected. The following software has been tested to determine which versions or editions are affected. Knowledge Base Article Knowledge Base Article See also the section, Detection and Deployment Tools and Guidance, later in this bulletin. For more information, see Check for Office for Mac updates automatically. For information about specific configuration options in automatic updating, see Microsoft Knowledge Base Article 294871.įor administrators and enterprise installations, or end users who want to install this security update manually, Microsoft recommends that customers apply the update at the earliest opportunity using update management software, or by checking for updates using the Microsoft Update service.įor customers of Microsoft Office for Mac, Microsoft AutoUpdate for Mac can be configured to deliver updates for Microsoft software directly to your system. Customers who have not enabled automatic updating need to check for updates from Microsoft Update and install this update manually. Customers who have automatic updating enabled and configured to check online for updates from Microsoft Update typically will not need to take any action because this security update will be downloaded and installed automatically. Recommendation. Customers can configure automatic updating to check online for updates from Microsoft Update by using the Microsoft Update service. For more information about the vulnerabilities, see the Frequently Asked Questions (FAQ) subsection for the specific vulnerability entry under the next section, Vulnerability Information. ![]() The security update addresses the vulnerabilities by correcting how Microsoft Excel and other affected Microsoft software validates data when parsing specially crafted Office files and by correcting the manner in which the XML parser used by Excel resolves external entities within a specially crafted file. For more information, see the subsection, Affected and Non-Affected Software, in this section. This security update is rated Important for all supported editions of Microsoft Excel 2003, Microsoft Excel 2007, Microsoft Excel 2010, Microsoft Excel 2013, Microsoft Excel 2013 RT, and Microsoft Office for Mac 2011 it is also rated Important for supported versions of Microsoft Excel Viewer and Microsoft Office Compatibility Pack. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights. An attacker who successfully exploited the most severe vulnerabilities could gain the same user rights as the current user. The most severe vulnerabilities could allow remote code execution if a user opens a specially crafted Office file with an affected version of Microsoft Excel or other affected Microsoft Office software. This security update resolves three privately reported vulnerabilities in Microsoft Office. Version: 1.1 General Information Executive Summary Published: Septem| Updated: September 13, 2013 Security Bulletin Microsoft Security Bulletin MS13-073 - Important Vulnerabilities in Microsoft Excel Could Allow Remote Code Execution (2858300)
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |