[MS] Mehrere Schwachstellen in Microsoft Excel - MS11-045

—–BEGIN PGP SIGNED MESSAGE—–
Hash: SHA1

Liebe Kolleginnen und Kollegen,

soeben erreichte uns nachfolgende Warnung des Microsoft Product Security
Notification Service. Wir geben diese Informationen unveraendert an Sie
weiter.

CVE-2011-1276 – Buffer Overflow in Microsoft Excel

Ein Buffer Overflow in Microsoft Excel ermoeglicht entfernten Angreifern
das Ausfuehren beliebigen Codes. Vorraussetzung hierfuer ist, dass ein
Nutzer eine speziell praeparierte Execel-Datei oeffnet.

CVE-2011-1273 – Record-Parsing Schwachstelle in Microsoft Excel

In Microsoft Excel gibt es eine Schwachstelle bei der Verarbeitung von
Eingabedaten. Ein entfernter Angreifer kann dies ausnutzen indem er
einen Anwender dazu bringt eine praeparierte Eingabedatei zu oeffnen.
Die Schwachstelle ermoeglicht das Ausfuehren beliebigen Codes.

CVE-2011-1279 – Schwachstelle in Microsoft Excel

Eine Schwachstelle (Out of Bounds WriteAV Vulnerability) in Microsoft
Excel ermoeglicht entfernten Angreifern mittels speziell praeparierter
Excel-Dateien das Ausfuehren beliebigen Codes mit den Rechten des
Nutzers.

CVE-2011-1278 – Schwachstelle in Microsoft Excel

In Microsoft Excel gibt es eine Schwachstelle bei der Verarbeitung von
Eingabedaten. Mittels praeparierter Excel-Dateien kann ein entfernter
Angreifer beliebigen Code zur Ausfuehrung bringen, sofern es ihm gelingt
einen Nutzer zum Oeffnen einer solchen Datei zu verleiten.

CVE-2011-1275 – Schwachstelle in Microsoft Excel

Eine Schwachstelle in Microsoft Excel (Memory Heap Overwrite) bei der
Verarbeitung von Eingabedateien kann zur Ausfuehrung beliebigen Codes
ausgenutzt werden. Voraussetzung hierfuer ist, dass der Nutzer eine
speziell vorbereitete Datei oeffnet.

CVE-2011-1272 – Record-Validation Schwachstelle in Microsoft Excel

Mittels praeparierter Eingabedateien kann eine Schwachstelle in
Microsoft Excel ausgenutzt werden. Ein Angreifer dem es gelingt einen
Anwender zum Oeffnen einer solchen Datei zu verleiten kann die
Schwachstelle ausnutzen um beliebigen Code zur Ausfuehrung zu bringen.

CVE-2011-1277 – Speicherverletzung in Microsoft Excel

Bei der Verarbeitung von Excel-Dateien kann eine Speicherverletzung
auftreten. Ein entfernter Angreifer, dem es gelingt einen Nutzer zum
Oeffnen einer praeparierten Datei zu verleiten, kann diese Schwachstelle
ausnutzen um beliebigen Code auszufuehren.

CVE-2011-1274 – Schwachstelle in Microsoft Excel

In Microsoft Excel gibt es eine Schwachstelle (Out of Bounds Array
Access) bei der Verarbeitung von Eingabedaten. Ein Angreifer dem es
gelingt einen Nutzer zum Oeffnen einer praeparierten Datei zu verleiten
kann die Schwachstelle ausnutzen um beliebigen Code mit den Rechten des
Nutzer auszufuehren.

Betroffen sind die folgenden Software Pakete und Plattformen:

Microsoft Office XP Service Pack 3
Microsoft Office 2003 Service Pack 3
Microsoft Office 2007 Service Pack 2
Microsoft Office 2010
Microsoft Office 2004 fuer Mac
Microsoft Office 2008 fuer Mac
Microsoft Office fuer Mac 2011
Open XML File Format Converter fuer Mac
Microsoft Excel Viewer Service Pack 2
Microsoft Office Compatibility Pack fuer Word, Excel und PowerPoint
2007 File Formats Service Pack 2

Microsoft Windows
Mac OS X

Vom Hersteller werden ueberarbeitete Pakete zur Verfuegung gestellt.

(c) der deutschen Zusammenfassung bei DFN-CERT Services GmbH; die
Verbreitung, auch auszugsweise, ist nur unter Hinweis auf den Urheber,
DFN-CERT Services GmbH, und nur zu nicht kommerziellen Zwecken
gestattet.

Mit freundlichen Gruessen,
Tilmann Haak

– —
Dipl.-Inform. Tilmann Haak (Incident Response Team)

DFN-CERT Services GmbH, https://www.dfn-cert.de, Phone +49 40 808077-590
Sitz / Register: Hamburg, AG Hamburg, HRB 88805, Ust-IdNr.: DE 232129737
Sachsenstrasse 5, 20097 Hamburg/Germany, CEO: Dr. Klaus-Peter Kossakowski

Automatische Warnmeldungen: https://www.cert.dfn.de/autowarn

– —–BEGIN PGP SIGNED MESSAGE—–
Hash: SHA1

===========================================================================
AUSCERT External Security Bulletin Redistribution

ESB-2011.0633
Vulnerabilities in Microsoft Excel Could Allow Remote Code
Execution (2537146)
15 June 2011

===========================================================================

AusCERT Security Bulletin Summary
———————————

Product: Microsoft Office XP Service Pack 3
Microsoft Office 2003 Service Pack 3
Microsoft Office 2007 Service Pack 2
Microsoft Office 2010
Microsoft Office 2004 for Mac
Microsoft Office 2008 for Mac
Microsoft Office for Mac 2011
Open XML File Format Converter for Mac
Microsoft Excel Viewer Service Pack 2
Microsoft Office Compatibility Pack for Word, Excel, and
PowerPoint 2007 File Formats Service Pack 2
Publisher: Microsoft
Operating System: Windows
Mac OS X
Impact/Access: Execute Arbitrary Code/Commands — Remote with User Interaction
Resolution: Patch/Upgrade
CVE Names: CVE-2011-1279 CVE-2011-1273 CVE-2011-1272

Original Bulletin:
http://www.microsoft.com/technet/security/bulletin/MS11-045.mspx

– – ————————–BEGIN INCLUDED TEXT——————–

Microsoft Security Bulletin MS11-045 – Important
Vulnerabilities in Microsoft Excel Could Allow Remote Code Execution (2537146)
Version: 1.0

General Information

Executive Summary

This security update resolves eight privately reported vulnerabilities in
Microsoft Office. The vulnerabilities could allow remote code execution if a
user opens a specially crafted Excel file. An attacker who successfully
exploited any of these vulnerabilities could gain the same user rights as the
logged-on user. Users whose accounts are configured to have fewer user rights
on the system could be less impacted than users who operate with administrative
user rights. Installing and configuring Office File Validation (OFV) to prevent
the opening of suspicious files blocks the attack vectors for exploiting the
vulnerabilities described in CVE-2011-1272, CVE-2011-1273, and CVE-2011-1279.
See the section, Frequently Asked Questions (FAQ) Related to This Security
Update, for more information about how the Office File Validation feature can
be configured to block the attack vectors. Microsoft Excel 2010 is only
affected by CVE-2011-1273 described in this bulletin. The automated Microsoft
Fix it solution, “Disable Edit in Protected View for Excel 2010,” available
in Microsoft Knowledge Base Article 2501584, blocks the attack vectors for
exploiting CVE-2011-1273.

This security update is rated Important for all supported editions of
Microsoft Excel 2002, Microsoft Excel 2003, Microsoft Excel 2007, Microsoft
Excel 2010, Microsoft Office 2004 for Mac, Microsoft Office 2008 for Mac,
and Microsoft Office for Mac 2011; Open XML File Format Converter for Mac;
and all supported versions of Microsoft Excel Viewer and Microsoft Office
Compatibility Pack. For more information, see the subsection, Affected and
Non-Affected Software, in this section.

Affected Software

Microsoft Office XP Service Pack 3
Microsoft Office 2003 Service Pack 3
Microsoft Office 2007 Service Pack 2
Microsoft Office 2010 (32-bit editions)
Microsoft Office 2010 (64-bit editions)
Microsoft Office 2004 for Mac
Microsoft Office 2008 for Mac
Microsoft Office for Mac 2011
Open XML File Format Converter for Mac
Other Microsoft Office Software
Microsoft Excel Viewer Service Pack 2
Microsoft Office Compatibility Pack for Word, Excel, and PowerPoint 2007 File
Formats Service Pack 2

Vulnerability Information

Excel Insufficient Record Validation Vulnerability – CVE-2011-1272

A remote code execution vulnerability exists in the way that Microsoft Excel
handles specially crafted Excel files. An attacker who successfully exploited
this vulnerability could take complete control of an affected system. An
attacker could then install programs; view, change, or delete data; or create
new accounts with full user rights.

Excel Improper Record Parsing Vulnerability – CVE-2011-1273

A remote code execution vulnerability exists in the way that Microsoft Excel
handles specially crafted Excel files. An attacker who successfully exploited
this vulnerability could take complete control of an affected system. An
attacker could then install programs; view, change, or delete data; or create
new accounts with full user rights.

Excel Out of Bounds Array Access Vulnerability – CVE-2011-1274

A remote code execution vulnerability exists in the way that Microsoft Excel
handles specially crafted Excel files. An attacker who successfully exploited
this vulnerability could take complete control of an affected system. An
attacker could then install programs; view, change, or delete data; or create
new accounts with full user rights.

– – ————————–END INCLUDED TEXT——————–

You have received this e-mail bulletin as a result of your organisation’s
registration with AusCERT. The mailing list you are subscribed to is
maintained within your organisation, so if you do not wish to continue
receiving these bulletins you should contact your local IT manager. If
you do not know who that is, please send an email to auscert@auscert.org.au
and we will forward your request to the appropriate person.

NOTE: Third Party Rights
This security bulletin is provided as a service to AusCERT’s members. As
AusCERT did not write the document quoted above, AusCERT has had no control
over its content. The decision to follow or act on information or advice
contained in this security bulletin is the responsibility of each user or
organisation, and should be considered in accordance with your organisation’s
site policies and procedures. AusCERT takes no responsibility for consequences
which may arise from following or acting on information or advice contained in
this security bulletin.

NOTE: This is only the original release of the security bulletin. It may
not be updated when updates to the original are made. If downloading at
a later date, it is recommended that the bulletin is retrieved directly
from the author’s website to ensure that the information is still current.

Contact information for the authors of the original document is included
in the Security Bulletin above. If you have any questions or need further
information, please contact them directly.

Previous advisories and external security bulletins can be retrieved from:

http://www.auscert.org.au/render.html?cid=1980

===========================================================================
Australian Computer Emergency Response Team
The University of Queensland
Brisbane
Qld 4072

Internet Email: auscert@auscert.org.au
Facsimile: (07) 3365 7031
Telephone: (07) 3365 4417 (International: +61 7 3365 4417)
AusCERT personnel answer during Queensland business hours
which are GMT+10:00 (AEST).
On call after hours for member emergencies only.
===========================================================================
– —–BEGIN PGP SIGNATURE—–
Comment: http://www.auscert.org.au/render.html?it=1967

iD8DBQFN+ASV/iFOrG6YcBERAvW3AKDBbP4uTJbw7bHbE9ro8QvHBfIZtgCfTn8X
PwunDYH2COq7NB4DMMSsRc0=
=5OmO
– —–END PGP SIGNATURE—–
—–BEGIN PGP SIGNATURE—–
Version: GnuPG v2.0.16 (GNU/Linux)

iQEcBAEBAgAGBQJN+Kf1AAoJEJtyb8U7iGZBNrIIAKHvKCRAj+8WReBHLIbFzjY3
IfMQM8SDnvxZ0Kt6sbezcBkA7rJnYd8lS9XvZ248DpwlpAQSTXlG0Td1D8xjomi4
E1tx7wgk8Id4E3RqZf8EeOc3CSsSY5/I21qo2ucRlfpS4YXttT3aQZ+Yjf7wYJHD
u+Is3+0a5ZjehjdyRb7FTaGCqV48QxVwZ+zd3uW5zONEFwDmkWcuLmB4pGVWHs8Z
J9RVpaiU31+omdxiiXg8Zc0x5f0tLmqIuxxIWuKZtGmkU6wpSgdcQgQ0fimptduU
DQG/P01n4kRReWzAvTsGoSAMLuauAJ++lD8qFX5364Dp769RQEwX0V56d0PYzZw=
=KmGs
—–END PGP SIGNATURE—–

Nach oben