Mailing List

Name:

Email:

[SingCERT] Microsoft Security Bulletin Summary for March 2010

Attention: open in a new window. PDFPrintE-mail

[ Summary ]

Microsoft has released 2 security bulletins, both rated Important, affecting Microsoft Windows and Microsoft Office.

 

Important
Vulnerability in Windows Movie Maker Could Allow Remote Code Execution (975561)
Vulnerabilities in Microsoft Office Excel Could Allow Remote Code Execution (980150)

 

[ Affected System ]

The following systems are affected. Please see the vendor advisory for the complete list of systems and versions that are affected.
  • Microsoft Windows
  • Microsoft Office

[ Impact Analysis ]

Vulnerability in Windows Movie Maker Could Allow Remote Code Execution (975561)
The vulnerability could allow remote code execution if an attacker sent a specially crafted Movie Maker or Microsoft Producer project file and convinced the user to open the specially crafted file.

Vulnerabilities in Microsoft Office Excel Could Allow Remote Code Execution (980150)
This security update resolves seven privately reported vulnerabilities in Microsoft Office Excel. The vulnerabilities could allow remote code execution if a user opens a specially crafted Excel file.

 

[ Solution/Workaround ]

Microsoft has released patches for the vulnerabilities. Please see the vendor advisory for instructions.

 

[ Reference ]

  • http://www.microsoft.com/technet/security/bulletin/MS10-mar.mspx
  • http://www.microsoft.com/technet/security/bulletin/ms10-016.mspx
  • http://www.microsoft.com/technet/security/Bulletin/MS10-017.mspx