Joris Evers
CNET News.com
May 24, 2006, 09:05 BST
Running Word in the restricted mode will not fix the vulnerability, but it will help block known modes of attack In the wake of at least one targeted attack that exploits a new flaw in Word, Microsoft is advising users to run the application in "safe mode".
Running Word in the restricted mode will not fix the vulnerability, but it will help block known modes of attack, Microsoft said in a security advisory published late on Monday. The software maker is also developing a security update for Word, which should be available on 13 June or sooner, as warranted, the company said.
Enabling "safe mode" is a two-step process. The first part involves disabling the use of Word as an email client, the second is appending "/safe" to the command line that starts Word. Microsoft provides instructions for home and enterprise users in its security advisory.
News of the Word flaw and attack surfaced last week. Word 2002 and Word 2003 are vulnerable, but Word 2000 is not, Microsoft said. For an attack to be carried out, a PC user must open a malicious Word document sent in an email or otherwise provided by an attacker, it said.
Aside from changing the way Word runs, people can protect their systems by being careful in the opening of Word documents received as an unexpected email attachment, Microsoft said.
http://news.zdnet.co.uk/0,39020330,39270914,00.htm