Thursday, May 16, 2013

Microsoft releases patches for Word

 

Word

If you use Word in your office for Word Processing, you should know that this week  Microsoft released a patch for a vulnerability within Word having to do with RCE which stands for remote code execution. 

An attacker may entice one of your users to download and open a document that includes malicious code.  This might grant an attacker full access to the end user computer.  This flaw affects Word and Word Viewer 2003.  You can update Word using the following patch:

MS13-043

IE Vulnerability

IE

 

As part of Microsoft’s Patch day, two security bulletins were released regarding security issues with Internet Explorer.  Both updated are rated critical.  

The new flaws are that  attackers can lure of of your users to a web page containing malicious HTML.  Because of this, an attacker can exploit these vulnerabilities and execute code on the end user’s computer. 

As always, it is important to download and install Windows updates or set your computer to do it automatically to install the latest patches and prevent problems.  The two security bulletins are as follows:

MS13-037

MS13-038