Microsoft Word Affected by Critical Office Zero-Day Vulnerability, Reports McAfee

Advertisement
By Ketan Pratap | Updated: 12 April 2017 19:02 IST
Highlights
  • New exploit works on all Microsoft Office versions
  • Microsoft to release fix soon
  • McAfee recommends enabling Office Protected View

Security software company McAfee has discovered a new zero-day vulnerability that affects all versions of Microsoft Word. According to the company, the new zero-day exploit works on all Microsoft Office versions, including the latest Office 2016 running on Windows 10. For those unaware, a zero-day vulnerability or zero-day attack is a threat that can take advantage of a previously unknown susceptibility in an app or Web service that has not been addressed or patched by developers.

McAfee in its research report detailed it discovered the exploit in action in late January. The samples collected by the team saw the exploit organised as Word files (more specially, RTF files with ".doc" extension name).

"The exploit connects to a remote server (controlled by the attacker), downloads a file that contains HTML application content, and executes it as an .hta file. Because .hta is executable, the attacker gains full code execution on the victim's machine. Thus, this is a logical bug, and gives the attackers the power to bypass any memory-based mitigation developed by Microsoft," explains the McAfee team. The .hta content is said to be disguised as a normal RTF file to evade security products.

Advertisement

"The successful exploit closes the bait Word document, and pops up a fake one to show the victim. In the background, the malware has already been stealthily installed on the victim's system," adds the team.

McAfee team has suggested some mitigation against the new zero-day attack before Microsoft issues an official patch including enabling the Office Protected View as the new exploit cannot bypass the Office Protected View, and do not open any Office files obtained from untrusted locations.

"We notified the Microsoft Security Response Center as soon as we found the suspicious samples, and we will continue to work with them to protect Office users," the team wrote in a blog post.

 

For the latest tech news and reviews, follow Gadgets 360 on X, Facebook, WhatsApp, Threads and Google News. For the latest videos on gadgets and tech, subscribe to our YouTube channel. If you want to know everything about top influencers, follow our in-house Who'sThat360 on Instagram and YouTube.

Advertisement

Related Stories

Popular Mobile Brands
  1. Sony Bravia Theatre System 6 Review
  2. Amazon Sale 2025: Here Are the Top 43-Inch Smart TV Deals on Amazon
  3. Best Computer Monitor Deals in Amazon Great Indian Festival Sale 2025
  4. Amazon Sale 2025: Best Deals and Offers on Mirrorless Cameras
  5. iQOO 15 India Launch Timeline, Design, Key Specifications Leaked
  6. Oppo Find X9 Listed on BIS Website, Could Launch in India Soon
  7. Amazon Sale 2025: Best Smartphone Deals Under Rs 30,000
  8. Bird-Inspired Robot With Innovative Wing Design Achieves Self-Takeoff and Controlled Fligh
  9. Vivo Will Replace Funtouch OS with Origin OS 6 in India on This Date
  1. PM Modi Announces BSNL’s 'Swadeshi' 4G Network, Over 97,000 Telecom Towers
  2. Bird-Inspired Robot With Innovative Wing Design Achieves Self-Takeoff and Controlled Flight
  3. NASA Prepares 2025 Carruthers Mission to Explore Earth’s Hidden Hydrogen Halo
  4. Nubia Z80 Ultra Launch Timeline, Display and Camera Specifications Teased
  5. Alan Wake 2, Cocoon and Goat Simulator 3 Join PS Plus in October
  6. iQOO 15 India Launch Timeline, Design, Key Specifications Leaked
  7. Xiaomi 17 to Be Available in New 1TB Storage Variant on October 5: Price, Features
  8. Poco F8 Ultra Key Specifications Including Battery, Snapdragon 8 Elite Gen 5 Chipset Leaked
  9. Oppo Find X9 Listed on BIS Website, Could Launch in India Soon
  10. Adobe Integrates Gemini Nano Banana Image Model Into Firefly App
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.