MS11-021 / MS11-022 / MS11-023: Vulnerabilities in Microsoft Office Could Allow Remote Code Execution (2489279 / 2489283 / 2489293) (Mac OS X)

high Nessus Plugin ID 53374

Synopsis

An application installed on the remote Mac OS X host is affected by multiple remote code execution vulnerabilities.

Description

The remote Mac OS X host is running a version of Microsoft Office that is affected by several vulnerabilities.

If an attacker can trick a user on the affected host into opening a specially crafted Office file, these issues could be leveraged to execute arbitrary code subject to the user's privileges.

Solution

Microsoft has released a set of patches for Office for Mac 2011, Office 2008 for Mac, Office 2004 for Mac, and Open XML File Format Converter for Mac.

See Also

http://technet.microsoft.com/en-us/security/bulletin/ms11-021

http://technet.microsoft.com/en-us/security/bulletin/ms11-022

http://technet.microsoft.com/en-us/security/bulletin/ms11-023

Plugin Details

Severity: High

ID: 53374

File Name: macosx_ms_office_apr2011.nasl

Version: 1.32

Type: local

Agent: macosx

Published: 4/13/2011

Updated: 11/27/2023

Supported Sensors: Nessus Agent, Nessus

Risk Information

VPR

Risk Factor: Critical

Score: 9.7

CVSS v2

Risk Factor: High

Base Score: 9.3

Temporal Score: 8.1

Vector: CVSS2#AV:N/AC:M/Au:N/C:C/I:C/A:C

CVSS Score Source: CVE-2011-0980

Vulnerability Information

CPE: cpe:/a:microsoft:office:2004::mac, cpe:/a:microsoft:office:2008::mac, cpe:/a:microsoft:office:2011::mac, cpe:/a:microsoft:open_xml_file_format_converter:::mac

Required KB Items: Host/uname, Host/MacOSX/packages

Exploit Available: true

Exploit Ease: Exploits are available

Patch Publication Date: 4/12/2011

Vulnerability Publication Date: 2/7/2011

Exploitable With

CANVAS (White_Phosphorus)

Core Impact

Metasploit (MS11-021 Microsoft Office 2007 Excel .xlb Buffer Overflow)

Reference Information

CVE: CVE-2011-0097, CVE-2011-0098, CVE-2011-0101, CVE-2011-0103, CVE-2011-0104, CVE-2011-0105, CVE-2011-0655, CVE-2011-0656, CVE-2011-0976, CVE-2011-0977, CVE-2011-0978, CVE-2011-0979, CVE-2011-0980

BID: 46225, 46226, 46227, 46228, 46229, 47201, 47243, 47244, 47245, 47251, 47252

IAVA: 2011-A-0045-S

MSFT: MS11-021, MS11-022, MS11-023

MSKB: 2489279, 2489283, 2489293, 2505924, 2505927, 2505935, 2525412