Excel Error Handling Flaw in Microsoft Products
CVE-2011-0979
Currently unrated
Key Information:
- Vendor
Microsoft
- Vendor
- CVE Published:
- 10 February 2011
What is CVE-2011-0979?
Certain Microsoft Excel products fail to handle errors occurring during the parsing of Office Art records appropriately. This oversight allows remote attackers to exploit the vulnerability through specially crafted Excel files, enabling them to execute arbitrary code. The so-called 'stray reference' issue is linked to a corruption in the Excel linked list. When affected users open a malicious file, their system could become compromised without their knowledge.