AplusWebMaster
Topic Starter
FYI…
- http://www.avertlabs.com/research/blog/ind…ts-nothing-new/
March 6, 2008 - "Recently our friends from Pandalabs published a weblog*, stating there is a new Microsoft access exploit found in the wild. We initiated some research on this exploit and found it actually targets an older well known vulnerability, CVE-2005-0944**, found by the hexview team in March 2005. It’s very easy to exploit this vulnerability. We had observed similar exploits last year, and the dropper used in this case looks very similar to that one. Microsoft considers MDB files to be unsafe, so a specific patch for this vulnerability has not been released since it was made public 3 years ago… Since Microsoft doesn’t patch Access-related vulnerabilities, we highly recommend Office users -never- open untrusted MDB files."
* http://pandalabs.pandasecurity.com/archive…ss-exploit.aspx
3 March 08
** http://nvd.nist.gov/nvd.cfm?cvename=CVE-2005-0944
- http://www.avertlabs.com/research/blog/ind…ts-nothing-new/
March 6, 2008 - "Recently our friends from Pandalabs published a weblog*, stating there is a new Microsoft access exploit found in the wild. We initiated some research on this exploit and found it actually targets an older well known vulnerability, CVE-2005-0944**, found by the hexview team in March 2005. It’s very easy to exploit this vulnerability. We had observed similar exploits last year, and the dropper used in this case looks very similar to that one. Microsoft considers MDB files to be unsafe, so a specific patch for this vulnerability has not been released since it was made public 3 years ago… Since Microsoft doesn’t patch Access-related vulnerabilities, we highly recommend Office users -never- open untrusted MDB files."
* http://pandalabs.pandasecurity.com/archive…ss-exploit.aspx
3 March 08
** http://nvd.nist.gov/nvd.cfm?cvename=CVE-2005-0944