Skip to content
OnMSFT.com
  • Home
  • About
  • Contact
  • News
  • How-to
  • Feature stories
  • Deals
  • Microsoft / office 365
  • Reviews
Menu
  • Home
  • About
  • Contact
  • News
  • How-to
  • Feature stories
  • Deals
  • Microsoft / office 365
  • Reviews
  1. Home
  2. News
  3. Malicious Word attachment wreaks havoc on Windows and Office, Microsoft offers temporary fix

Malicious Word attachment wreaks havoc on Windows and Office, Microsoft offers temporary fix

Ron Ron
September 21, 2020
2 min read

Malicious Word attachment wreaks havoc on Windows and Office, Microsoft offers temporary fix

Microsoft has rolled out Security Advisory 2896666, which deals with an attack that is disguised as an email requesting potential targets to open a specially crafted Word attachment. While Microsoft is working on a security fix, the company has rolled out a temporary solution to help mitigate the issue.

This Security Advisory affects Windows Vista, Windows Server 2008, Office 2003 to Office 2010, and all supported versions of Microsoft Lync. Apparently, a malicious Word document is floating around as an email attachment which, when opened or previewed, attempts to exploit the vulnerability using a malformed graphics image embedded in the Word file. If the attack is successful, the attacker would gain the same rights as the computer user.

This attack is mainly occurring in the Middle East and South Asia, but can happen elsewhere. Of course, Microsoft recommends not clicking suspicious links or opening email messages from unfamiliar senders.

“As a best practice, we always encourage customers to follow the “Protect Your Computer” guidance of enabling a firewall, applying all software updates and installing anti-virus and anti-spyware software.  We also encourage customers to exercise caution when visiting websites and avoid clicking suspicious links or opening email messages from unfamiliar senders,” Microsoft stated in an official blog post.

As Microsoft continues to work on a security fix for this issue, the company has provided a temporary fix-it solution:

  • Apply the Microsoft Fix it solution, “Disable the TIFF Codec” that prevents exploitation of the issue
  • Deploy the Enhanced Mitigation Experience Toolkit (EMET)

Share This Post:

Tags: Microsoft | Security
Share this article:
Tags:
Microsoft Security
Previous Article Snag yourself a Windows 8.1 powered Acer Aspire E-15 for $199 as part of Microsoft’s back-to-school deal Next Article Lenovo slams the brakes on small screen Windows 8.1 tablets, cites a ‘lack of interest’

Related Articles

Chrome tests Google Drive file uploads in the AI Mode compose box

April 14, 2026
Gemini image creation using right click desktop Chrome

Chrome lets you remake images with Gemini on desktop using just a right-click

April 13, 2026
Samsung Display crosses 5 million QD-OLED monitor shipments as demand grows fast, with new panels and strong premium market expansion worldwide.

Samsung Display Ships 5 Million QD-OLED Monitor Panels in Four Years

April 9, 2026

Leave a Comment Cancel reply

Your email address will not be published. Required fields are marked *

Recent Posts

  • Chrome tests Google Drive file uploads in the AI Mode compose box
  • Chrome lets you remake images with Gemini on desktop using just a right-click
  • Samsung Display Ships 5 Million QD-OLED Monitor Panels in Four Years
  • Intel Arc Pro B70 Teardown Reveals Blower Cooler and Early Board Design Details
  • Users Modify RTX 5090 Lightning Z Hardware to Unlock MSI’s Restricted 2500W BIOS

Recent Comments

  1. XxRIVTYxX on Intel Says It Tried to Help Before Crimson Desert Dropped Arc Support
  2. Gaurav Kumar on Chrome Prepares Nudge to ‘Move Tabs to the Side’ as Vertical Tabs Near Release
OnMSFT.com

The Tech News Site

Categories

  • Windows
  • Surface
  • Xbox
  • How-To
  • OnPodcast
  • Gaming
  • Edge
  • Teams

Recent Posts

  • Chrome tests Google Drive file uploads in the AI Mode compose box
  • Chrome lets you remake images with Gemini on desktop using just a right-click
  • Samsung Display Ships 5 Million QD-OLED Monitor Panels in Four Years
  • Intel Arc Pro B70 Teardown Reveals Blower Cooler and Early Board Design Details
  • Users Modify RTX 5090 Lightning Z Hardware to Unlock MSI’s Restricted 2500W BIOS

Quick Links

  • About OnMSFT.com
  • Contact OnMSFT
  • Join Our Team
  • Privacy Policy
© 2010–2026 OnMSFT.com LLC. All rights reserved.
About OnMSFT.comContact OnMSFTPrivacy Policy