RULE(RULE ID:710711)

Rule General Information
Release Date: 2013-04-25
Rule Name: Microsoft Office Excel SxView Memory Corruption Vulnerability-1 (CVE-2009-3128)
Severity:
CVE ID:
Rule Protection Details
Description: Microsoft Office Excel contains a code execution vulnerability while parsing specially crafted Excel documents. The vulnerability is due to the way Microsoft Office Excel handles specially crafted Excel files that include a malformed SxView record, allowing for memory corruption. Remote attackers can exploit this vulnerability by enticing target users to open a malicious Excel file, potentially causing arbitrary code to be injected and executed in the security context of the current logged on user.
Impact: Remote code execution
Affected OS: Windows
Reference: CVE-2009-3128
Solutions
Update vendor's patch.