Microsoft Word 2003 SP3, 2007 SP3, 2010 SP1 및 SP2, 2013, 2013 RT, Word Viewer, Office Compatibility Pack SP3, Office for Mac 2011, SharePoint Server 2010 SP1 및 SP2와 2013의 Word Automation Services, Office Web Apps 2010 SP1 및 SP2, Office Web Apps Server 2013에서는 원격 공격자가 조작된 RTF 데이터를 통해 임의 코드를 실행하거나 서비스 거부(메모리 손상)를 일으킬 수 있으며, 이는 2014년 3월 실제로 악용되었습니다.
Microsoft Word 2003 SP3, 2007 SP3, 2010 SP1 및 SP2, 2013, 2013 RT, Word Viewer, Office Compatibility Pack SP3, Office for Mac 2011, SharePoint Server 2010 SP1 및 SP2와 2013의 Word Automation Services, Office Web Apps 2010 SP1 및 SP2, Office Web Apps Server 2013에서는 원격 공격자가 조작된 RTF 데이터를 통해 임의 코드를 실행하거나 서비스 거부(메모리 손상)를 일으킬 수 있으며, 이는 2014년 3월 실제로 악용되었습니다.
한국어 설명은 영문 원문을 기준으로 제공됩니다. 제품명·버전·보안 식별자는 아래 원문과 함께 확인할 수 있습니다.
영문 원문 보기
Microsoft Word 2003 SP3, 2007 SP3, 2010 SP1 and SP2, 2013, and 2013 RT; Word Viewer; Office Compatibility Pack SP3; Office for Mac 2011; Word Automation Services on SharePoint Server 2010 SP1 and SP2 and 2013; Office Web Apps 2010 SP1 and SP2; and Office Web Apps Server 2013 allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via crafted RTF data, as exploited in the wild in March 2014.