[MACEP] New at ftp.mesd--Microsoft Office 2004 11.2.3 (#2) Update

John Bromley the.bromleys at verizon.net
Wed Mar 15 19:56:04 PST 2006


The following files are new or updated in the /pub/mac directory of  
the FTP server located at:
  ftp://ftp.mesd.k12.or.us/pub/mac/.

Microsoft Office 2004 11.2.3 (#2) Update
ftp://ftp.mesd.k12.or.us:21//pub/mac/Office2004-1123UpdateEN.dmg

  (The information below is from MacFixIt.com)
Security vulnerabilities patched in this release

The Office 2004 11.2.3 release addresses critical vulnerabilities in  
Microsoft Office and Excel. Exploitation of these vulnerabilities  
could allow a remote, unauthenticated attacker to execute arbitrary  
code or cause a denial of service on a vulnerable system.

Among the vulnerabilities plugged:

Microsoft Excel contains a memory corruption vulnerability. This  
vulnerability may allow a remote attacker to execute arbitrary code  
on a vulnerable system.
Microsoft Excel fails to properly validate records. This  
vulnerability may allow a remote attacker to execute arbitrary code  
on a vulnerable system.
Microsoft Excel fails to properly validate graphics. This  
vulnerability may allow a remote attacker to execute arbitrary code  
on a vulnerable system.
Microsoft Excel fails to properly validate the description field.  
This vulnerability may allow a remote attacker to execute arbitrary  
code on a vulnerable system.
Microsoft Office contains a buffer overflow in the parsing of routing  
slips, which may allow an attacker to execute arbitrary code on a  
vulnerable system.

Microsoft released Office 2004 11.2.3 (#2) Update for Microsoft  
Office 2004 Standard Edition, Office 2004 Student and Teacher  
Edition, Office 2004 Professional Edition and Entourage 2004, saying:

After you install this update, you can use Mac OS X Sync Services and  
Spotlight searches to sync and find Entourage items, use smart cards  
with Entourage 2004, and enjoy improved overall security and  
stability when using Microsoft Word 2004, Excel 2004, PowerPoint  
2004, and Entourage 2004. This update also includes all of the  
improvements released in all previous Office 2004 updates.



-- 
John Bromley
(503) 668-3332

"Even if you're on the right track, you'll get run over if you just  
sit there." -----  Will Rogers



-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://mailman.mesd.k12.or.us/pipermail/macep/attachments/20060315/ffdb7b56/attachment.html


More information about the MACEP mailing list