internet.com
You are in the: Small Business Computing Channelarrow
Small Business Technology
» ECommerce-Guide | Small Business Computing | Webopedia | WinPlanet

WinPlanet Software Downloads and Reviews for Small Businesses
Search
Power Search | Tips
-
Navigate WinPlanet
WinPlanet Home Page

Software
Download Index
In-Depth Reviews
Tips & Tutorials
Updates
News

Software Categories
Browsers
Chat / Conferencing
Desktop Utilities
Development
Internet Apps
Multimedia
OS Service Packs
Productivity Tools

Software Glossary

WinPlanet Newsletter

internet.commerce
Partners & Affiliates













Small Business Computing
Small Business Computing
Ecommerce Guide
Webopedia
WinPlanet

WinPlanet / News

Download of the day
Security Task Manager

Most Popular Software Downloads
Windows 7
Adobe Flash Player
AVG Anti-Virus Free
QuickTime for Windows
Mozilla Firefox 3
Windows Vista Service Pack 2 (Vista SP2)
Internet Explorer 8
Ad-Aware Free
Google Chrome
Winamp

Most Popular Software Articles
Windows Vista Tips & Tricks, Part 1
Official Windows 7 Beta Build Leaks to BitTorrent
A Year of Change Ahead for Microsoft in 2009


Software Reviews

Microsoft Warns of New Zero-Day Flaw
Vulnerability in Microsoft Word 2000 Attacked
Michael Hickins

Microsoft (Quote) is investigating new public reports of limited "zero-day" attacks using a vulnerability in Microsoft Word 2000.

Alexandra Huft, a member of Microsoft's security team, said the Redmond, Wash.-based vendor posted Microsoft Security Advisory (932114) for an issue "that only affects Microsoft Word 2000."

"We are currently investigating a report of a posting of proof of concept code which could allow an attacker to execute code on a user's machine in their security context by convincing them to open a specially-crafted Word document," Huft wrote in a posting to the company's Web site on Friday.

Internet security firm Secunia reported the exploit on Friday and deemed it "extremely critical."

Microsoft, however, minimized the potential impact of the exploit.

"We are aware of very limited, targeted attacks attempting to use the vulnerability reported," Huft wrote.

When Microsoft talks about "very limited, targeted attacks," they specifically mean attacks carried out against a very small number of customers (sometimes only one or two even) or ones that are carried out in a very deliberate fashion against a specific organization or organizations.

They contrast this to attacks that affect a broad number of customers randomly.

In order for this attack to be carried out, a user must first open a malicious Word file attached to an e-mail or otherwise provided to them by an attacker.

News courtesy of internetnews.com

January 29, 2007

View All Microsoft Service & Security Releases

Contents:
1. Vulnerability in Microsoft Word 2000 Attacked