Update Protection against Microsoft Office Publisher 2007 Remote Code Execution Vulnerability (MS07-037)
| Check Point Reference: | CPAI-2007-087 | |
| Date Published: | ||
| Severity: | ||
| Last Updated: | ||
| Source: | Microsoft Security Bulletin MS07-037 | |
| Industry Reference(s): | CVE-2007-1754 | |
| Protection Provided by: |
VPN-1
|
|
| Who is Vulnerable? Microsoft Office Publisher 2007 | ||
| Vulnerability Description A remote code execution vulnerability has been reported in Microsoft Publisher. Microsoft Publisher is a desktop publishing application for creating marketing materials, managing customer lists and more. A remote attacker can exploit this vulnerability via a specially crafted .pub file. Successful exploitation may allow execution of arbitrary code on a vulnerable system. |
||
|
Update/Patch Available Apply patches: Microsoft Security Bulletin MS07-037 |
|
|
Vulnerability Details The vulnerability is due to a memory corruption error in Microsoft Publisher that fails to properly handle malformed pages. A remote attacker could trigger this flaw by convincing the victim to open a specially crafted Publisher page (.PUB). Successful exploitation of this issue allows execution of arbitrary code once the malformed page is opened on a vulnerable system. |
Protection Overview
By enabling this protection, SmartDefense will detect and block the transferring of Microsoft Publisher files over HTTP.
In order for the protection to be activated, update your VPN-1/InterSpect product to the latest SmartDefense update. For information on how to update SmartDefense, go to SBP-2006-05, Protection tab and select the version of your choice.
To configure the defense, select your product from the list below and follow the related protection steps.
Additional Information
The Update released on August 6, 2007 includes the following protections:
Microsoft Excel Remote Code Execution Vulnerability (MS07-036) CPAI-2007-085
Multiple Microsoft Windows Active Directory Crafted LDAP Request Vulnerabilities (MS07-039) CPAI-2007-086
Microsoft Office Publisher 2007 Remote Code Execution Vulnerability (MS07-037) CPAI-2007-087