Microsoft Office contains a flaw that may allow a malicious user to execute arbitrary code on the target machine. An attacker could exploit this vulnerability when Office parses a malformed chart record.
Classification
Location:
Local Access Required
Attack Type:
Denial of Service,
Input Manipulation
Impact:
Loss of Integrity,
Loss of Availability
Solution:
Patch / RCS
Exploit:
Exploit Private,
Exploit Unknown
Solution
Microsoft Corporation has released a patch to address this issue. Additionally, it is possible to correct the flaw by implementing the following workaround(s):
Do not open or save Microsoft Office files that are untrusted or that you receive from trusted sources unexpectedly.