MS14-022: Description of the security update for SharePoint Designer 2007: May 13, 2014

Introduction
This update resolves vulnerabilities in SharePoint Designer 2007 that could allow remote code execution if an authenticated attacker sends specially crafted page content to a target SharePoint server.
Summary
Microsoft has released security bulletin MS14-022. Learn more about how to obtain the fixes included in this security bulletin:

How to obtain help and support for this security update

Help installing updates: Support for Microsoft Update

Security solutions for IT professionals: TechNet Security Troubleshooting and Support

Help protect your computer that is running Windows from viruses and malware: Virus Solution and Security Center

Local support according to your country: International Support

More information about this security update

Restart information

You may have to restart the computer after you install this security update.

In some cases, this update does not require a restart. If the required files are being used, this update will require a restart. If this behavior occurs, you will receive a message that advises you to restart the computer.

To help reduce the possibility that a restart will be required, stop all affected services and close all applications that may use the affected files before you install this security update.

Learn about why you may be prompted to restart your computer after you install a security update on a Windows-based computer.

Removal information

Note We do not recommend that you remove any security update.

To remove this security update, use the Add or Remove Programs item or use the Programs and Features item in Control Panel.

Note When you remove this security update, you may be prompted to insert the disc that contains Microsoft Office. Additionally, you may not have the option to uninstall this security update from the Add or Remove Programs item or the Programs and Features item in Control Panel. There are several possible causes of this issue.

Learn about the ability to uninstall Office updates.

Security update replacement information

This security update does not replace a previously released security update.

File information

The English (United States) version of this security update has the file attributes (or later file attributes) that are listed in the following table. The dates and times for these files are listed in Coordinated Universal Time (UTC). When you view the file information, it is converted to local time. To find the difference between UTC and local time, use the Time Zone tab in the Date and Time item in Control Panel.


File nameFile versionFile sizeDateTime
Fpcutl.dll_spd12.0.6650.50003,486,13631-Aug-201112:36
Fpdb.dll_spd12.0.6650.5000352,62427-Aug-201107:02
Fpeditax.dll_spd12.0.6653.50009,399,70429-Sep-201110:19
Microsoft_web_authoring.dll_spd12.0.6650.5000243,58431-Aug-201112:36
Microsoft_web_design_client.dll_spd12.0.6690.5000473,79216-Nov-201303:02
Msimport.exe_spd12.0.6650.5000718,16827-Aug-201107:02
Spdesign.exe12.0.6652.50006,080,39222-Sep-201104:34
Vtidb.exe_spd12.0.6650.5000352,11227-Aug-201107:02
Vtiform.exe_spd12.0.6650.5000215,39227-Aug-201107:02
update security_patch security_update security bug flaw vulnerability malicious attacker exploit registry unauthenticated buffer overrun overflow specially-formed scope specially-crafted denial of service dos
Properties

Article ID: 2596810 - Last Review: 05/13/2014 18:43:00 - Revision: 1.0

Microsoft Office SharePoint Designer 2007

  • kbqfe kbsurveynew kbexpertiseinter kbsecurity kbsecbulletin kbsecvulnerability kbbug kbfix KB2596810
Feedback