Microsoft does not patch Word 2000

Yesterday, Microsoft released a monthly security update to fix three serious security flaws in its products.

The most vulnerable bugs that need to be patched in Word 2000 applications are not included in this list of fixed errors this time.

This is a really serious security error because it has been exploited to attack users in the past. Meanwhile, Microsoft recently announced that it is developing this security patch update and will release it with the September security update.

Picture 1 of Microsoft does not patch Word 2000 " This security error is similar to the security bug in the Microsoft Publisher application located in the Office 200, Office XP and Office 2003 software suites. We have fixed these security flaws ," Microsoft said in the MS06- 054.

Microsoft said that in order to successfully exploit security flaws in Word 2000 or in Microsoft Publisher, an attacker must create malicious files and trick people into using them. " If successful exploitation an attacker can take full control of the infected system ," Microsoft said. " We recommend users to install patches as soon as possible ."

Of the two Windows security bugs fixed this time, there was a security error that could be exploited by hackers to remotely hijack the faulty system. This is a security error related to data exchange procedures in Windows XP. An attacker can exploit this security error by sending special data packets to the infected system through Pragmatic General Multicast (PMG). This is part of Microsoft Message Queuing v3.0 technology.

Meanwhile, the remaining security flaws can be exploited to exploit and steal users' information. This is an XSS (cross-site scripting) error that exists in the Microsoft Indexing Service. In order to exploit this security error, an attacker needs to run code on the system that has failed. This code plays the role of collecting data and sending it to the attacker when the user accesses a website.

Users can now download security updates via Microsoft website or through Automatic Updates feature of the operating system.

Hoang Dung