Microsoft Excel Vulnerability CVE-2009-0238
February 27th, 2009
The Sourcefire VRT is aware of a vulnerability in Microsoft Excel that is being actively exploited by a Trojan Horse program.
Details:
Microsoft Excel Code Execution (CVE-2009-0238): Microsoft Excel contains a programming error that may allow a remote attacker to execute code on a vulnerable system. The problem occurs when Excel attempts to process a specially crafted document with an invalid object. This issue is being actively exploited by Trojan.Mdropper.AC. A rule to detect attacks targeting this vulnerability is included in this release and is identified with GID 3, SID 15365.
For Assistance
- Visit the Sourcefire Customer Support site at https://support.sourcefire.com.
- Email Sourcefire Customer Support at support@sourcefire.com.
- Call Sourcefire Customer Support at 410.423.1901 or 1.800.917.4134.
