Monthly Archives: March 2014

Microsoft Word Vulnerability

Microsoft released a security bulletin yesterday warning of a vulnerability in Microsoft Word.  A user is exposed when opening a malicious document created in ‘rich text format’ (RTF extension).

Microsoft’s fix is to disable the automatic opening of RTF documents; no patch has been issued.

Although Microsoft leads one to believe that the vulnerability exists in Word 2010, Outlook 2007, Outlook 2010 and Outlook 2013, I wouldn’t trust any version!

So folks, if you receive an email attachment in RTF format, for the foreseeable future, don’t open it!