Microsoft Excel畸形命名区域内存破坏漏洞(MS06-012)
发布日期:2005-12-08
更新日期:2006-03-16
受影响系统:Microsoft Office XP SP3
Microsoft Office X for Mac
Microsoft Office 2004 for Mac
Microsoft Office 2003 Service Pack 2
Microsoft Office 2003 Service Pack 1
Microsoft Office 2000 Service Pack 3
Microsoft Works Suite 2006
Microsoft Works Suite 2005
Microsoft Works Suite 2004
Microsoft Works Suite 2003
Microsoft Works Suite 2002
Microsoft Works Suite 2001
Microsoft Works Suite 2000
描述:
BUGTRAQ ID:
15780
CVE(CAN) ID:
CVE-2005-4131
Microsoft Excel是Office产品套件中的电子表格和分析程序。
Microsoft Excel中存在安全漏洞,攻击者可能利用此漏洞在机器上执行指令。
如果能够通过Excel .xls文件的数据字段向"msvcrt.memmove()"传送很大的值的话,就可能导致内存破坏,执行任意代码。
<*来源:fearwall
FelicioX (
feliciox@gmail.com)
链接:
http://marc.theaimsgroup.com/?l=bugtraq&m=114243480308398&w=2
http://www.microsoft.com/technet/security/Bulletin/MS06-012.mspx#E4EAE
http://www.us-cert.gov/cas/techalerts/TA06-073A.html
*>
测试方法:
警 告
以下程序(方法)可能带有攻击性,仅供安全研究与教学之用。使用者风险自负!
00000720 00 80 00 ff 93 02 04 00 14 80 05 ff 60 01 02 00 |............`...|
00000730 00 00 85 00 0e 00 ba 05 00 00 00 00 06 00 53 68 |..............Sh|
00000740 65 65 74 31 8c 00 04 00 01 00 01 00 ae 01 04 00 |eet1............|
00000750 01 00 01 04 17 00 08 00 01 00 00 00 00 00 00 00 |................|
00000760 18 00 1b 00 00 00 00 05 07 ** ** 00 00 00 00 00 |................|
00000770 00 00 00 54 45 53 54 31 3a 00 00 00 00 00 00 c1 |...TEST1:.......|
00000780 01 08 00 c1 01 00 00 22 be 01 00 fc 00 08 00 00 |......."........|
00000790 00 00 00 00 00 00 00 ff 00 02 00 08 00 63 08 15 |.............c..|
建议:
厂商补丁:
Microsoft
---------
Microsoft已经为此发布了一个安全公告(MS06-012)以及相应补丁:
MS06-012:Vulnerabilities in Microsoft Office Could Allow Remote Code Execution (905413)
链接:
http://www.microsoft.com/technet/security/Bulletin/MS06-012.mspx#E4EAE浏览次数:4675
严重程度:0(网友投票)