Make Homepage | Add To Favorites | Print Page | Submit News | Feedback | Contact | 

Your Technical Computer Information Resource!  
     
  Technical Updates @ TACKtech Corp.  

02.22.2012 - MS11-088 - Important : Vulnerability in Microsoft Office IME (Chinese) Could Allow Elevation of Privilege (2652016) - Version: 1.2



View Microsoft related news. Severity Rating: Important
Revision Note: V1.2 (February 22, 2012): Clarified product support status for Microsoft Office Pinyin SimpleFast Style 2010 and Microsoft Office Pinyin New Experience Style 2010. These versions of Microsoft Office Pinyin are no longer supported. Microsoft recommends that all customers of these versions upgrade to the latest version of Microsoft Pinyin IME 2010 available through Microsoft Office 2010. See update FAQ for details.
Summary: This security update resolves a privately reported vulnerability in Microsoft Office IME (Chinese). The vulnerability could allow elevation of privilege if a logged-on user performed specific actions on a system where an affected version of the Microsoft Pinyin (MSPY) Input Method Editor (IME) for Simplified Chinese is installed. An attacker who successfully exploited this vulnerability could run arbitrary code in kernel mode. An attacker could then install programs; view, change, or delete data; or create new accounts with full administrative rights. Only implementations of Microsoft Pinyin IME 2010 are affected by this vulnerability. Other versions of Simplified Chinese IME and other implementations of IME are not affected.

- View Microsoft Security Bulletin MS11-088
- View Microsoft Knowledge Base Article - on: 1.
- Visit Microsoft Corporation

NID: 41088 / Submitted by: The Zilla of Zuron
Categories: Microsoft
Most recent Microsoft related news.
MS14-075 - Important: Vulnerabilities in Microsoft Exchange Server Could Allow Elevation of Privilege (3009712) - Version: 3.0
MS14-075 - Important: Vulnerabilities in Microsoft Exchange Server Could Allow Elevation of Privilege (3009712) - Version: 2.0
MS14-057 - Critical: Vulnerabilities in .NET Framework Could Allow Remote Code Execution (3000414) - Version: 1.1
MS14-065 - Critical: Cumulative Security Update for Internet Explorer (3003057) - Version: 2.0
MS14-082 - Important: Vulnerability in Microsoft Office Could Allow Remote Code Execution (3017349) - Version: 1.0
View archive of Microsoft related news.

Visit the TACKtech Shop
  Popular Tech News  
  Most Viewed News  
  Top Affiliates  
.......