Ethical Hacking

Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package.
Computer Forensics Training at InfoSec Institute

Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors.




Network Security Incidents
[Top] [All Lists]

Major updates in PowerPoint FAQ document - not a 0-day issue

Subject: Major updates in PowerPoint FAQ document - not a 0-day issue
Date: Wed, 23 Aug 2006 00:00:10 +0300 (EEST)
Several updates to Microsoft PowerPoint Vulnerability FAQ - August 2006, 
CVE-2006-4274 document at
http://blogs.securiteam.com/?p=559
have been done.

* According to the new information confirmed today this is not 0-day 
vulnerability, it is related to patched MS06-012:
http://www.microsoft.com/technet/security/bulletin/MS06-012.mspx

* Related issue in MS06-012 is Microsoft Office Remote Code Execution Using a 
Malformed Routing Slip Vulnerability - CVE-2006-0009

* This related Trojan attemps to download malicious files with keylogger 
features

* New names used in Trojan description added

* Some other updates and fixes done

What to do:
Apply a patch MS06-012 as soon as possible

- Juha-Matti

<Prev in Thread] Current Thread [Next in Thread>
  • Major updates in PowerPoint FAQ document - not a 0-day issue, Juha-Matti Laurio <=