<< Back
CVE Number Vulnerability Product Severity Date
MS09-021 Vulnerabilities in Microsoft Office Excel Could Allow Remote Code Execution (969462) Microsoft Excel Critical 10-06-2009

Technical Information

Brief overview of the risk:
This security update resolves several privately reported vulnerabilities that could allow remote code execution if a user opens a specially crafted Excel file that includes a malformed record object. An attacker who successfully exploited any of these vulnerabilities could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights.
Detailed Information on the risk:

A remote code execution vulnerability exists in Microsoft Office Excel that could allow remote code execution if a user opens a specially crafted Excel file that includes a malformed record object. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights.


Further information on this exploit is available at : MS09-021

Affected Software

Microsoft Excel 2000 Service Pack 3 (Microsoft Office 2000 Service Pack 3)
Microsoft Excel 2002 Service Pack 3 (Microsoft Office XP Service Pack 3)
Microsoft Excel 2003 Service Pack 3 (Microsoft Office 2003 Service Pack 3)
Microsoft Office 2004 for Mac
Microsoft Office 2008 for Mac
Microsoft Office Compatibility Pack for Word, Excel, and PowerPoint 2007 File Formats Service Pack 1
Microsoft Office Compatibility Pack for Word, Excel, and PowerPoint 2007 File Formats Service Pack 2
Microsoft Office Excel 2007 Service Pack 1 (2007 Microsoft Office System Service Pack 1)
Microsoft Office Excel 2007 Service Pack 2 (2007 Microsoft Office System Service Pack 2)
Microsoft Office Excel Viewer
Microsoft Office Excel Viewer 2003 Service Pack 3
Microsoft Office SharePoint Server 2007 Service Pack 1 (32-bit editions)
Microsoft Office SharePoint Server 2007 Service Pack 1 (64-bit editions)
Microsoft Office SharePoint Server 2007 Service Pack 2 (32-bit editions)
Microsoft Office SharePoint Server 2007 Service Pack 2 (64-bit editions)
Open XML File Format Converter for Mac