Microsoft plugs Excel hole

Published: 14 January 1999 y., Thursday
Microsoft Corp._s Excel spreadsheet software has a vulnerability that lets hackers run certain types of executables that can give them access to a PC user_s files, Internet security firm Finjan Inc. said yesterday. The hole is dubbed the "Russian New Year" exploitation, Finjan said in a statement from its offices in San Jose, Calif. The company said the new form of mobile-code attack "clearly illustrates the latent security threats on the Internet and the importance of inspecting any type of code that is downloaded onto your personal computer." John Duncan, product manager for Microsoft_s Office suite -- which includes Excel -- said information regarding the problem, along with a patch that plugged the vulnerability, was posted on Microsoft_s Web site Dec.10. The hacker backdoor is a legitimate Excel function, dubbed CALL, that allows executables to be run from a worksheet, Microsoft said. But if that executable, delivered via E-mail or from a Web site, is of a malicious nature, "a worksheet containing this function could represent a security risk to customers," according to a Microsoft security bulletin also dated Dec. 10. Finjan said Office 97 and Excel 97 users should apply Microsoft_s patch to disable the CALL function. But it added that Office 95 and Excel 95 "do not appear to have a patch to eliminate this CALL function nor do non-English language versions of Office 97 or Excel 97 have a solution."
Šaltinis: Finjan
Copying, publishing, announcing any information from the News.lt portal without written permission of News.lt editorial office is prohibited.

Facebook Comments

New comment


Captcha

Associated articles

The Slovak electronic vignette brought a significant increase in the revenues from collection for the government

The electronic vignette system in the Slovak Republic has become unique in the world thanks to the speed of implementation and increase in the revenues from the collection carried out by SkyToll a.s. on behalf of the Slovak government. more »

Unisys Names Perla Do Amral as New Managed Services Executive in Latin America

Unisys has promoted Perla Do Amral to a key leadership role, becoming director of service desk operations for the U.S.-based IT company’s managed services centers in Latin America. more »

Microsoft names a new Corporate Vice President for Latin America

Cesar Cernuda is a Microsoft veteran of 19 years, and has served in several senior leadership positions for Microsoft Business Solutions, including overseeing Microsoft’s ERP and CRM business worldwide. more »

Unisys Wins Contract to Provide IT Support for NASA Langley Flight Simulations

Unisys received a contract from NASA Langley Research Center (LaRC) to continue to deliver advanced hardware, software, and systems integration for flight simulation projects at the agency. more »

Unisys Announces Third-Quarter 2015 Financial Results

Unisys Corporation reported third quarter 2015 results. more »

IBC 2015 will introduce the novelties in the electronic media and entertainment industry

On the 10th–15th, this September, RAI Exhibition and Congress Centre in Amsterdam will hold the 48th international exhibition-conference dedicated to electronic media and entertainment industry IBC 2015. more »

Unisys Helps Customs and Border Protection Test Facial Recognition System at Dulles Airport

Unisys Corporation announced the completion of the initial phase of testing of a facial recognition system at Dulles International Airport, Virginia, to help Customs and Border Protection (CBP) to identify imposters attempting to enter the United States using passports that are fraudulent or do not belong to them. more »

Past and Future of Television: from Mechanical to IPTV

Television was invented back in 1884, when German Paul Gottlieb Nipkow came up with the idea to scan images using a rotating metal disc with a spiral pattern of holes in it. When the disc was spinning, each hole would scan one brightly lit line of the image. more »

SuperCom Reports Organic Year-over-Year Growth of 45% in Revenue and 76% in EBITDA for the First Quarter of 2015

SuperCom, a leading provider of secure solutions for e-Government, Public Safety, HealthCare, and Finance sectors, announced its results for the quarter ended March 31, 2015. more »

Unisys Corporation Names Tom Patterson to Lead Global Security Solutions Business

Unisys Corporation today announced that Tom Patterson has joined the company as vice president for global security solutions, responsible for leading Unisys' security solutions business worldwide. more »