<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="http://msmvps.com/utility/FeedStylesheets/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/"><channel><title>MVP Jubo Security Blog : Security Advisory</title><link>http://msmvps.com/blogs/jubo/archive/tags/Security+Advisory/default.aspx</link><description>Tags: Security Advisory</description><dc:language>en</dc:language><generator>CommunityServer 2008.5 SP2 (Build: 40407.4157)</generator><item><title>Microsoft Security Advisory (973472)</title><link>http://msmvps.com/blogs/jubo/archive/2009/07/13/1700108.aspx</link><pubDate>Mon, 13 Jul 2009 16:00:00 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:1700108</guid><dc:creator>jubo</dc:creator><slash:comments>1</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/jubo/rsscomments.aspx?PostID=1700108</wfw:commentRss><comments>http://msmvps.com/blogs/jubo/archive/2009/07/13/1700108.aspx#comments</comments><description>&lt;p&gt;Microsoft is investigating a privately reported vulnerability in Microsoft Office Web Components. An attacker who successfully exploited this vulnerability could gain the same user rights as the local user. When using Internet Explorer, code execution is remote and may not require any user intervention. &lt;/p&gt;
&lt;p&gt;For more information see Microsoft &lt;a target="_blank" href="http://www.microsoft.com/technet/security/advisory/973472.mspx"&gt;TechNet&lt;/a&gt;&lt;/p&gt;
&lt;p&gt;&amp;nbsp;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=1700108" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/jubo/archive/tags/Security+Advisory/default.aspx">Security Advisory</category></item><item><title>Possible vulnerability in Microsoft Office Word 2002 Service Pack 3</title><link>http://msmvps.com/blogs/jubo/archive/2008/07/09/1639937.aspx</link><pubDate>Wed, 09 Jul 2008 08:48:03 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:1639937</guid><dc:creator>jubo</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/jubo/rsscomments.aspx?PostID=1639937</wfw:commentRss><comments>http://msmvps.com/blogs/jubo/archive/2008/07/09/1639937.aspx#comments</comments><description>&lt;p&gt;Microsoft released an advisory for a Office Word 2002 SP3 vulnerability. &lt;/p&gt; &lt;p&gt;Investigation indicates that customers who use all other supported versions of Microsoft Office Word, Microsoft Office Word Viewer, Microsoft Office Compatibility Pack for Word, Excel, and PowerPoint 2007 File Formats, and Microsoft Office for Mac are not affected.  &lt;p&gt;At this time, Microsoft is aware of limited, targeted attacks that attempt to use this vulnerability. While Microsoft Office Word 2000 does not appear vulnerable to this issue, Word 2000 may unexpectedly exit when opening a specially crafted .doc file that the attacker is using in an attempt to exploit the vulnerability. &lt;p&gt;&amp;nbsp; &lt;p&gt;More information: &lt;a href="http://www.microsoft.com/technet/security/advisory/953635.mspx" target="_blank"&gt;Microsoft Security Advisory (953635)&lt;/a&gt; and &lt;a href="http://blogs.technet.com/msrc/archive/2008/07/08/vulnerability-in-microsoft-word-could-allow-remote-code-execution.aspx" target="_blank"&gt;MSRC Blog&lt;/a&gt;. &lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=1639937" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/jubo/archive/tags/Security+Advisory/default.aspx">Security Advisory</category><category domain="http://msmvps.com/blogs/jubo/archive/tags/Microsoft+Office/default.aspx">Microsoft Office</category></item><item><title>Snapshot Viewer MS Access ActiveX Control Vulnerability</title><link>http://msmvps.com/blogs/jubo/archive/2008/07/08/1639724.aspx</link><pubDate>Tue, 08 Jul 2008 07:00:46 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:1639724</guid><dc:creator>jubo</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/jubo/rsscomments.aspx?PostID=1639724</wfw:commentRss><comments>http://msmvps.com/blogs/jubo/archive/2008/07/08/1639724.aspx#comments</comments><description>&lt;p&gt;Microsoft has released an advisory for a MS Access remote code-execution vulnerability. The flaw lies in the Microsoft Snapshot Viewer ActiveX control, &amp;quot;snapview.ocx&amp;quot;, which may allow remote code-execution attacks. This affects Office Access 2000, Office Access 2002 and Office Access 2003.&lt;/p&gt; &lt;p&gt;An attacker could exploit this vulnerability by constructing a specially crafted Web page. When a user views the Web page, the vulnerability could allow remote code execution.&lt;/p&gt; &lt;p&gt;There&amp;#39;s no patch available yet, but there are manual workarounds. For more information see &lt;a href="http://www.microsoft.com/technet/security/advisory/955179.mspx" target="_blank"&gt;Microsoft&amp;#39;s Security Advisory (955179)&lt;/a&gt; and &lt;a href="http://blogs.technet.com/msrc/archive/2008/07/07/snapshot-viewer-activex-control-vulnerability.aspx" target="_blank"&gt;MSRC Blog&lt;/a&gt;.&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=1639724" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/jubo/archive/tags/Security+Advisory/default.aspx">Security Advisory</category></item><item><title>Apple's Safari on Windows Platform Threat</title><link>http://msmvps.com/blogs/jubo/archive/2008/06/02/1630140.aspx</link><pubDate>Mon, 02 Jun 2008 08:13:43 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:1630140</guid><dc:creator>jubo</dc:creator><slash:comments>1</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/jubo/rsscomments.aspx?PostID=1630140</wfw:commentRss><comments>http://msmvps.com/blogs/jubo/archive/2008/06/02/1630140.aspx#comments</comments><description>&lt;blockquote&gt; &lt;p&gt;&lt;em&gt;Microsoft is investigating new public reports of a blended threat that allows remote code execution on all supported versions of Windows XP and Windows Vista when Apple’s Safari for Windows has been installed. Safari is not installed with Windows XP or Windows Vista by default; it must be installed independently or through the Apple Software Update application. Customers running Safari on Windows should review this &lt;a href="http://www.microsoft.com/technet/security/advisory/953818.mspx" target="_blank"&gt;advisory&lt;/a&gt;.&lt;/em&gt;&lt;/p&gt;&lt;/blockquote&gt; &lt;p&gt;More information: &lt;a href="http://www.microsoft.com/technet/security/advisory/953818.mspx" target="_blank"&gt;Microsoft Security Advisory (953818)&lt;/a&gt; and &lt;a href="http://blogs.technet.com/msrc/default.aspx" target="_blank"&gt;MSRC&lt;/a&gt;&amp;#39;s blog: &lt;a href="http://blogs.technet.com/msrc/archive/2008/05/30/security-advisory-953818-posted.aspx" target="_blank"&gt;Security Advisory 953818 Posted&lt;/a&gt;.&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=1630140" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/jubo/archive/tags/Security+Advisory/default.aspx">Security Advisory</category></item><item><title>Microsoft Security Advisory (951306)</title><link>http://msmvps.com/blogs/jubo/archive/2008/04/19/1594980.aspx</link><pubDate>Sat, 19 Apr 2008 09:01:51 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:1594980</guid><dc:creator>jubo</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/jubo/rsscomments.aspx?PostID=1594980</wfw:commentRss><comments>http://msmvps.com/blogs/jubo/archive/2008/04/19/1594980.aspx#comments</comments><description>&lt;p&gt;Vulnerability in Windows Could Allow Elevation of Privilege&lt;br /&gt;&lt;font size="1"&gt;Published: April 17, 2008&lt;/font&gt;&lt;/p&gt; &lt;blockquote&gt; &lt;p&gt;&lt;em&gt;Microsoft is investigating new public reports of a vulnerability which could allow elevation of privilege from authenticated user to LocalSystem, affecting Windows XP Professional Service Pack 2 and all supported versions and editions of Windows Server 2003, Windows Vista, and Windows Server 2008.&lt;/em&gt; &lt;/p&gt;&lt;/blockquote&gt; &lt;p&gt;Source: &lt;a href="http://www.microsoft.com/technet/security/advisory/951306.mspx" target="_blank"&gt;TechNet&lt;/a&gt;&lt;/p&gt; &lt;p&gt;See also: &lt;a href="http://blogs.technet.com/msrc/archive/2008/04/17/msrc-blog-microsoft-security-advisory-951306.aspx" target="_blank"&gt;MSRC Blog&lt;/a&gt;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=1594980" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/jubo/archive/tags/Security+Advisory/default.aspx">Security Advisory</category></item><item><title>Microsoft Security Advisory (947563)</title><link>http://msmvps.com/blogs/jubo/archive/2008/01/21/1472952.aspx</link><pubDate>Mon, 21 Jan 2008 07:25:22 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:1472952</guid><dc:creator>jubo</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/jubo/rsscomments.aspx?PostID=1472952</wfw:commentRss><comments>http://msmvps.com/blogs/jubo/archive/2008/01/21/1472952.aspx#comments</comments><description>&lt;p&gt;&lt;font face="Tahoma" size="3"&gt;Vulnerability in Microsoft Excel Could Allow Remote Code Execution&lt;/font&gt;&lt;/p&gt; &lt;p&gt;&lt;font face="Tahoma" size="1"&gt;Published: January 15, 2008 | Updated: January 16, 2008&lt;/font&gt;&lt;/p&gt; &lt;p&gt;Microsoft is investigating new public reports of a vulnerability in &lt;strong&gt;Microsoft Office Excel 2003 Service Pack 2&lt;/strong&gt;, Microsoft &lt;strong&gt;Office Excel Viewer 2003&lt;/strong&gt;, Microsoft &lt;strong&gt;Office Excel 2002&lt;/strong&gt;, Microsoft &lt;strong&gt;Office Excel 2000&lt;/strong&gt;, and Microsoft &lt;strong&gt;Excel 2004 for Mac&lt;/strong&gt;. At this time, Microsoft&amp;#39;s initial investigation indicates that customers who are using Microsoft Office Excel 2007 or Microsoft Excel 2008 for Mac, or who have installed Microsoft Office Excel 2003 Service Pack 3 are not affected by this vulnerability. &lt;/p&gt; &lt;p&gt;See advisory at: &lt;a href="http://www.microsoft.com/technet/security/advisory/947563.mspx" target="_blank"&gt;TechNet&lt;/a&gt;&lt;/p&gt; &lt;p&gt;Check for the latest Office software at: &lt;a href="http://office.microsoft.com/en-us/downloads/maincatalog.aspx" target="_blank"&gt;Microsoft Office Update&lt;/a&gt;&lt;/p&gt; &lt;p&gt;Or: &lt;a href="http://update.microsoft.com/microsoftupdate/v6/default.aspx?ln=en-us" target="_blank"&gt;Microsoft Update&lt;/a&gt;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=1472952" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/jubo/archive/tags/Security+Advisory/default.aspx">Security Advisory</category><category domain="http://msmvps.com/blogs/jubo/archive/tags/Microsoft+Office/default.aspx">Microsoft Office</category></item><item><title>Vulnerability in RPC on Windows DNS Server Could Allow Remote Code Execution</title><link>http://msmvps.com/blogs/jubo/archive/2007/04/13/794386.aspx</link><pubDate>Fri, 13 Apr 2007 11:34:00 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:794386</guid><dc:creator>jubo</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/jubo/rsscomments.aspx?PostID=794386</wfw:commentRss><comments>http://msmvps.com/blogs/jubo/archive/2007/04/13/794386.aspx#comments</comments><description>&lt;P&gt;&lt;A class="" href="http://www.microsoft.com/technet/security/advisory/935964.mspx" target=_blank&gt;Microsoft Security Advisory (935964)&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;Microsoft is investigating new public reports of a limited attack exploiting a vulnerability in the Domain Name System (DNS) Server Service in Microsoft Windows 2000 Server Service Pack 4, Windows Server 2003 Service Pack 1, and Windows Server 2003 Service Pack 2. Microsoft Windows 2000 Professional Service Pack 4, Windows XP Service Pack 2, and Windows Vista are not affected as these versions do not contain the vulnerable code.&lt;/P&gt;
&lt;P&gt;Microsoft’s initial investigation reveals that the attempts to exploit this vulnerability could allow an attacker to run code in the security context of the Domain Name System Server Service, which by default runs as Local SYSTEM.&lt;BR&gt;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;Related Software:&lt;/STRONG&gt;&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;Microsoft Windows 2000 Server Service Pack 4&lt;/LI&gt;
&lt;LI&gt;Microsoft Windows Server 2003 Service Pack 1&lt;/LI&gt;
&lt;LI&gt;Microsoft Windows Server 2003 Service Pack 2&lt;/LI&gt;&lt;/UL&gt;
&lt;P&gt;CVE Reference: &lt;A class="" href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1748" target=_blank&gt;CVE-2007-1748&lt;/A&gt;.&lt;/P&gt;
&lt;P&gt;Microsoft Knowledge Base Article: &lt;A class="" href="http://support.microsoft.com/kb/935964" target=_blank&gt;935964&lt;/A&gt;.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=794386" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/jubo/archive/tags/Security+Advisory/default.aspx">Security Advisory</category></item><item><title>Vulnerability in Windows Animated Cursor Handling</title><link>http://msmvps.com/blogs/jubo/archive/2007/03/31/733570.aspx</link><pubDate>Sat, 31 Mar 2007 07:16:00 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:733570</guid><dc:creator>jubo</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/jubo/rsscomments.aspx?PostID=733570</wfw:commentRss><comments>http://msmvps.com/blogs/jubo/archive/2007/03/31/733570.aspx#comments</comments><description>&lt;P&gt;A few days ago Microsoft posted &lt;A class="" href="http://www.microsoft.com/technet/security/advisory/935423.mspx" target=_blank&gt;Security Advisory (935423)&lt;/A&gt;. Microsoft is investigating new public reports of attacks exploiting a vulnerability in the way Microsoft Windows handles animated cursor (.ani) files. In order for this attack to be carried out, a user must either visit a Web site that contains a Web page that is used to exploit the vulnerability or view a specially crafted e-mail message or email attachment sent to them by an attacker.&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;Mitigating Factors for Animated Cursor Vulnerability:&lt;/LI&gt;
&lt;UL&gt;
&lt;LI&gt;if you are using Internet Explorer 7 on Windows Vista you are protected from currently known web based attacks due to Internet Explorer 7.0 protected mode.&lt;/LI&gt;
&lt;LI&gt;If you are reading email in Outlook 2007 you are protected regardless of if you are reading the mail as plain text or not.&lt;/LI&gt;
&lt;LI&gt;If you are reading email using Windows Mail on Vista you are protected as long are not forwarding or replying to the attackers email.&lt;/LI&gt;
&lt;LI&gt;Regardless of if you are reading your mail in plain text on Outlook Express you are &lt;STRONG&gt;not&lt;/STRONG&gt; protected.&lt;/LI&gt;&lt;/UL&gt;&lt;/UL&gt;
&lt;P&gt;For more detailed information see: &lt;A class="" href="http://www.microsoft.com/technet/security/advisory/935423.mspx" target=_blank&gt;Microsoft Security Advisory (935423)&lt;/A&gt;.&lt;/P&gt;
&lt;P&gt;MSRC Blog: &lt;A class="" href="http://blogs.technet.com/msrc/archive/2007/03/29/microsoft-security-advisory-935423-posted.aspx" target=_blank&gt;Microsoft Security Advisory 935423 Posted&lt;/A&gt;&lt;BR&gt;MSRC Blog: &lt;A class="" href="http://blogs.technet.com/msrc/archive/2007/03/30/update-on-microsoft-security-advisory-935423.aspx" target=_blank&gt;Update on Microsoft Security Advisory 935423&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=733570" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/jubo/archive/tags/Security+Advisory/default.aspx">Security Advisory</category></item><item><title>Microsoft Security Bulletin Advance Notification for March 2007</title><link>http://msmvps.com/blogs/jubo/archive/2007/03/08/656463.aspx</link><pubDate>Thu, 08 Mar 2007 19:59:00 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:656463</guid><dc:creator>jubo</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/jubo/rsscomments.aspx?PostID=656463</wfw:commentRss><comments>http://msmvps.com/blogs/jubo/archive/2007/03/08/656463.aspx#comments</comments><description>&lt;P&gt;Somehow good news... no Microsoft Security Updates for this month:&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;On March 13, 2007 Microsoft is planning to release:&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;Security Updates&lt;/STRONG&gt;&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;No new Microsoft Security Bulletins will be released on March 13, 2007.&lt;/LI&gt;&lt;/UL&gt;
&lt;P&gt;&lt;STRONG&gt;Microsoft Windows Malicious Software Removal Tool&lt;/STRONG&gt;&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;Microsoft will release an updated version of the Microsoft Windows Malicious Software Removal Tool on Windows Update, Microsoft Update, Windows Server Update Services and the Download Center.&lt;/LI&gt;&lt;/UL&gt;
&lt;P&gt;&lt;STRONG&gt;Non-security High Priority updates on MU, WU, WSUS and SUS&lt;/STRONG&gt;&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;Microsoft will release two non-security high-priority updates for Windows on Windows Update (WU) and Software Update Services (SUS).&lt;/LI&gt;
&lt;LI&gt;Microsoft will release four non-security high-priority updates on Microsoft Update (MU) and Windows Server Update Services (WSUS).&lt;/LI&gt;&lt;/UL&gt;
&lt;P&gt;&amp;nbsp;Source: &lt;A class="" href="http://www.microsoft.com/technet/security/bulletin/advance.mspx" target=_blank&gt;TechNet&lt;/A&gt;.&lt;/P&gt;
&lt;P&gt;No matter what, there will be enough work on "my" computers on the other side of the pond the next few weeks...&lt;img src="http://msmvps.com/emoticons/emotion-15.gif" alt="Geeked" /&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=656463" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/jubo/archive/tags/Security+Advisory/default.aspx">Security Advisory</category></item><item><title>Microsoft Security Advisory 933052 published</title><link>http://msmvps.com/blogs/jubo/archive/2007/02/15/583322.aspx</link><pubDate>Thu, 15 Feb 2007 20:11:00 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:583322</guid><dc:creator>jubo</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/jubo/rsscomments.aspx?PostID=583322</wfw:commentRss><comments>http://msmvps.com/blogs/jubo/archive/2007/02/15/583322.aspx#comments</comments><description>&lt;P&gt;Microsoft is investigating new public reports of very limited, targeted attacks against Microsoft Word “zero-day” using a vulnerability in Microsoft Office 2000 and Microsoft Office XP.&lt;/P&gt;
&lt;P&gt;In order for this attack to be carried out, a user must first open a malicious Office file attached to an e-mail or otherwise provided to them by an attacker.&lt;/P&gt;
&lt;P&gt;More information: &lt;A class="" href="http://www.microsoft.com/technet/security/advisory/933052.mspx" target=_blank&gt;TechNet&lt;/A&gt;, &lt;A class="" href="http://blogs.technet.com/msrc/archive/2007/02/14/microsoft-security-advisory-933052-published.aspx" target=_blank&gt;MSRC Blog&lt;/A&gt;&amp;nbsp;and &lt;A class="" href="http://www.microsoft.com/security/msrc/incident_response.mspx" target=_blank&gt;SSIRP&lt;/A&gt;.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=583322" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/jubo/archive/tags/Security+Advisory/default.aspx">Security Advisory</category></item><item><title>Microsoft Excel “zero-day” exploit</title><link>http://msmvps.com/blogs/jubo/archive/2007/02/03/540959.aspx</link><pubDate>Sat, 03 Feb 2007 18:57:00 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:540959</guid><dc:creator>jubo</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/jubo/rsscomments.aspx?PostID=540959</wfw:commentRss><comments>http://msmvps.com/blogs/jubo/archive/2007/02/03/540959.aspx#comments</comments><description>&lt;P&gt;Microsoft has released a Security Advisory regarding a Microsoft Excel “zero-day” attacks using a vulnerability in Microsoft Office 2000, Microsoft Office XP, Microsoft Office 2003, and Microsoft Office 2004 for Mac. It involves an issue currently being exploited using Excel documents. But can affect all other Office documents. &lt;/P&gt;
&lt;P&gt;In order for this attack to be carried out, a user must first open a malicious Office document file attached to an email or otherwise provided to them by an attacker. So don't open any Office document in an email from&amp;nbsp;people you don't know. Keep your antivirus protection updated. If you're not sure you can always do an online scan at the &lt;A class="" href="http://safety.live.com/" target=_blank&gt;Windows Live OneCare safety scanner&lt;/A&gt;.&lt;/P&gt;
&lt;P&gt;Source: &lt;A class="" href="http://www.microsoft.com/technet/security/advisory/932553.mspx" target=_blank&gt;Microsoft Security Advisory (932553)&lt;/A&gt;.&lt;BR&gt;See also: &lt;A class="" href="http://blogs.technet.com/msrc/archive/2007/02/02/microsoft-security-advisory-932553-posted.aspx" target=_blank&gt;Microsoft Security Response Center Security Blog&lt;/A&gt;.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=540959" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/jubo/archive/tags/Security+Advisory/default.aspx">Security Advisory</category></item><item><title>Vulnerability in PowerPoint</title><link>http://msmvps.com/blogs/jubo/archive/2006/09/29/146765.aspx</link><pubDate>Fri, 29 Sep 2006 10:50:00 GMT</pubDate><guid isPermaLink="false">d67277c4-116b-43f1-b688-e9ef184ea916:146765</guid><dc:creator>jubo</dc:creator><slash:comments>0</slash:comments><wfw:commentRss xmlns:wfw="http://wellformedweb.org/CommentAPI/">http://msmvps.com/blogs/jubo/rsscomments.aspx?PostID=146765</wfw:commentRss><comments>http://msmvps.com/blogs/jubo/archive/2006/09/29/146765.aspx#comments</comments><description>&lt;p&gt;On September 27th, Microsoft released the following Security Advisory:&lt;/p&gt;&lt;ul&gt;&lt;li&gt;&lt;strong&gt;&lt;a href="http://www.microsoft.com/technet/security/advisory/925984.mspx" target="_blank"&gt;925984&lt;/a&gt;&lt;/strong&gt; Vulnerability in PowerPoint Could Allow Remote Code Execution.&lt;/li&gt;&lt;/ul&gt;&lt;p&gt;Microsoft is investigating new public reports of limited &amp;ldquo;zero-day&amp;rdquo; attacks using a vulnerability in the following Microsoft products:&lt;/p&gt;&lt;ul&gt;&lt;li&gt;PowerPoint 2000&lt;/li&gt;&lt;li&gt;PowerPoint 2002&lt;/li&gt;&lt;li&gt;PowerPoint 2003&lt;/li&gt;&lt;li&gt;PowerPoint 2004 for Mac&lt;/li&gt;&lt;li&gt;PowerPoint v. X for Mac&lt;/li&gt;&lt;/ul&gt;&lt;p&gt;In order for this attack to be carried out, a user must first open a malicious PowerPoint file attached to an e-mail or otherwise provided to them by an attacker.&lt;/p&gt;&lt;p&gt;Microsoft has added detection to the &lt;a href="http://safety.live.com/" target="_blank"&gt;Windows Live OneCare safety scanner&lt;/a&gt; for up-to-date removal of malicious software that attempts to exploit this vulnerability.&lt;/p&gt;&lt;p&gt;A workaround for this vulnerability is to use PowerPoint Viewer 2003 to open and view files. PowerPoint Viewer 2003 does not contain the vulnerable code and is not susceptible to this attack. To download the PowerPoint Viewer 2003 for free, visit the following &lt;a href="http://www.microsoft.com/downloads/details.aspx?FamilyID=428d5727-43ab-4f24-90b7-a94784af71a4"&gt;website&lt;/a&gt;.&lt;/p&gt;&lt;p&gt;Source: Microsoft Security Advisory (&lt;a href="http://www.microsoft.com/technet/security/advisory/925984.mspx" target="_blank"&gt;925984&lt;/a&gt;)&lt;/p&gt;&lt;p&gt;Other related links:&lt;/p&gt;&lt;ul&gt;&lt;li&gt;&lt;a href="http://www.avertlabs.com/research/blog/?p=95" target="_blank"&gt;McAfee Avert Labs Blog&lt;/a&gt;&lt;/li&gt;&lt;li&gt;&lt;strong&gt;McAfee:&lt;/strong&gt; &lt;a href="http://vil.nai.com/vil/content/v_140666.htm" target="_blank"&gt;Exploit-PPT.d&lt;/a&gt;&lt;/li&gt;&lt;li&gt;&lt;strong&gt;Symantec:&lt;/strong&gt; &lt;a href="http://www.symantec.com/enterprise/security_response/writeup.jsp?docid=2006-092715-1534-99" target="_blank"&gt;Trojan.PPDropper.F&lt;/a&gt;&lt;/li&gt;&lt;/ul&gt;&lt;img src="http://msmvps.com/aggbug.aspx?PostID=146765" width="1" height="1"&gt;</description><category domain="http://msmvps.com/blogs/jubo/archive/tags/Security+Advisory/default.aspx">Security Advisory</category></item></channel></rss>