Excel File Format Memory Corruption Vulnerability (CVE-2012-0141)

  Severity: CRITICAL
  CVE Identifier: CVE-2012-0141,MS12-030
  Advisory Date: JUL 21, 2015

  DESCRIPTION

Microsoft Excel 2003 SP3, 2007 SP2 and SP3, and 2010 Gold and SP1; Office 2011 for Mac; Excel Viewer; and Office Compatibility Pack SP2 and SP3 do not properly handle memory during the opening of files, which allows remote attackers to execute arbitrary code via a crafted spreadsheet, aka "Excel File Format Memory Corruption Vulnerability."

  TREND MICRO PROTECTION INFORMATION

Apply associated Trend Micro DPI Rules.

  SOLUTION

  Trend Micro Deep Security DPI Rule Number: 1005011
  Trend Micro Deep Security DPI Rule Name: 1005011 - Excel File Format Memory Corruption Vulnerability (CVE-2012-0141)

  AFFECTED SOFTWARE AND VERSION

  • microsoft excel 2003
  • microsoft excel 2007
  • microsoft excel 2010
  • microsoft excel_viewer
  • microsoft office 2011
  • microsoft office_compatibility_pack