Here are the steps to follow in order to stay protected from the newest Microsoft Office security flaws: In order to patch the security flaws, users will need to go through Windows Update. The term fuzzing refers to a technique to automatically find coding errors and security loopholes in software by randomly feeding invalid and unexpected data inputs into a program, to discover software bugs that can be exploited. The company regularly updates its software with performance improvements and security fixes, such as the recently issued update to fix the security flaws detected by the security firm.Ĭheck Point Research says that it discovered the flaws by "fuzzing" MSGraph which is used to display charts and graphs inside the Microsoft Office suite. Microsoft Office vulnerabilities are not uncommon, considering the large codebase that has expanded to add new features and functionality over the years. "The vulnerabilities are the result of parsing mistakes made in legacy code found in Excel95 File Formats, giving researchers reason to believe that the security flaws have existed for several years," the company said in a blog post. This package is extremely old and was being used by the office suite since 1995. Security flaws in the Microsoft Office software were previously identified by the cybersecurity firm, which would allow an attacker to take control of a computer, read and access files - and even install ransomware on it, locking its files behind a password until a specified sum of money is paid, usually in cryptocurrency.Īccording to Check Point Research, the weaknesses were spotted in a tool found in the Microsoft Office software called MSGraph. Microsoft Office users need to update their software right away, as the office suite has just received important critical security patches to fix four security flaws in Microsoft Word, Excel, PowerPoint, Office Web according to cybersecurity firm Check Point Research.
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. Archives
December 2022
Categories |