Computing Topics --> Security Topics --> Alerts --> US-CERT Advisory on Unpatched Microsoft Word Vulnerability -->

US-CERT Advisory on Unpatched Microsoft Word Vulnerability

The US-CERT has issued an advisory stating that a new unpatched vulnerability is present in Microsoft Word. An attacker can gain control of a computer if it reads a specially crafted Word document. There are reports that such documents are being sent via email. Microsoft is currently indicating that a patch for this vulnerability will not be released until their standard patch release date on the second Tuesday in June. Until a patch is available, users should view any emailed Word document with suspicion and NOT open any document that is unexpected.

Users running McAfee VirusScan updated with Friday's signature file will detect some infected documents. Users should not rely upon anti-virus software for absolute protection from this threat.

The US-CERT advisory can be read at:
http://www.kb.cert.org/vuls/id/446012

How do I:
How are we doing? Comments on this page?
Office of Information Technology
Office of Information Technology Help Desk Web Site University of Maryland Web Site Office of Information Technology Web Site