Microsoft Office PowerPoint Multiple Vulnerabilities( 10 November 2010 )
RISK: Medium Risk
1. PowerPoint Parsing Buffer Overflow Vulnerability
A remote code execution vulnerability exists in the way that Microsoft PowerPoint handles specially crafted PowerPoint 95 files. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights.
2. PowerPoint Integer Underflow Causes Heap Corruption Vulnerability
A remote code execution vulnerability exists in the way that Microsoft PowerPoint handles specially crafted PowerPoint files. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights.
Impact
- Remote Code Execution
System / Technologies affected
- Microsoft Office XP
- Microsoft PowerPoint 2002 - Microsoft Office 2003
- Microsoft PowerPoint 2003 - Microsoft Office 2004 for Mac
- Microsoft PowerPoint Viewer 2007
Solutions
Before installation of the software, please visit the software manufacturer web-site for more details.
Download locations for this patch
- Microsoft Office XP Service Pack 3
- Microsoft PowerPoint 2002 Service Pack 3 - Microsoft Office 2003 Service Pack 3
- Microsoft PowerPoint 2003 Service Pack 3 - Microsoft Office 2004 for Mac*
- Microsoft PowerPoint Viewer 2007 Service Pack 2
- *The security update for Microsoft Office 2004 for Mac is unavailable at this time.
Vulnerability Identifier
Source
Related Link
Share with