Дата обнаружения
|
12/07/2016 |
Уровень угрозы
|
High |
Описание
|
An improper memory objects handling and XLA files handling were found in Microsoft Office. By exploiting these vulnerabilities malicious users can execute arbitrary code. These vulnerabilities can be exploited remotely via a specially designed files. Technical details To mitigate some of these vulnerabilities you can block RTF files from opening. More information about this workaround you can find at MS16-088 advisory listed below. |
Пораженные продукты
|
Office Online Server |
Решение
|
Install necessary updates from the KB section, that are listed in your Windows Update (Windows Update usually can be accessed from the Control Panel) |
Первичный источник обнаружения
|
CVE-2016-3278 CVE-2016-3279 CVE-2016-3280 CVE-2016-3281 CVE-2016-3282 CVE-2016-3283 CVE-2016-3284 |
Оказываемое влияние
?
|
ACE
[?]
|
Связанные продукты
|
Microsoft Office Microsoft Sharepoint Server |
CVE-IDS
|
CVE-2016-32789.3Critical
CVE-2016-32794.3Warning CVE-2016-32809.3Critical CVE-2016-32819.3Critical CVE-2016-32829.3Critical CVE-2016-32839.3Critical CVE-2016-32849.3Critical |