Microsoft · Office · CVE-2006-0029
Name of the Vulnerable Software and Affected Versions:
Microsoft Excel versions 2000 through 2003
Microsoft Office version 2000 SP3
Description:
A remote code execution issue exists in Excel due to a malformed description, which can lead to memory corruption. This allows an attacker to execute arbitrary code by constructing a specially crafted Excel file. The issue can be exploited by user-assisted attackers, enabling remote code execution.
Recommendations:
For Microsoft Excel versions 2000 through 2003, consider avoiding the use of malformed descriptions in Excel files until a patch is available.
For Microsoft Office version 2000 SP3, restrict the opening of specially crafted Excel files to minimize the risk of exploitation.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.