Thread-topic: [SA20633] Microsoft PowerPoint Malformed Record Vulnerability
>
> TITLE:
> Microsoft PowerPoint Malformed Record Vulnerability
>
> SECUNIA ADVISORY ID:
> SA20633
>
> VERIFY ADVISORY:
>
>
> CRITICAL:
> Highly critical
>
> IMPACT:
> System access
>
> WHERE:
> From remote
>
> SOFTWARE:
> Microsoft PowerPoint 2002
>
> Microsoft PowerPoint 2000
>
> Microsoft Office XP
>
> Microsoft Office X for Mac
>
> Microsoft Office Powerpoint 2003
>
> Microsoft Office 2004 for Mac
>
> Microsoft Office 2000
>
>
> DESCRIPTION:
> A vulnerability has been reported in Microsoft PowerPoint, which can
> be exploited by malicious people to compromise a user's system.
>
> The vulnerability is caused due to a memory corruption error when
> processing PowerPoint documents containing malformed records.
>
> Successful exploitation allows execution of arbitrary code.
>
> SOLUTION:
> Apply patches.
>
> Microsoft PowerPoint 2000:
>
> 2CB-CFEE-4129-BB77-4779A3B05674
>
> Microsoft PowerPoint 2002:
>
> B9F-F04B-4D21-A95E-CCC90D9782AB
>
> Microsoft PowerPoint 2003:
>
> 804-45B4-4FD2-8FDB-4960C5BB8954
>
> Microsoft PowerPoint 2004 for Mac:
>
>
> Microsoft PowerPoint v. X for Mac:
>
>
> PROVIDED AND/OR DISCOVERED BY:
> The vendor credits:
> * Nicolas Ruff, Fabrice Desclaux, and Kostya Kortchinsky.
> * Elia Florio, Symantec.
> * Dejun Meng, Fortinet Security Response Team.
>
> ORIGINAL ADVISORY:
> MS06-028 (KB916768):
>
>
>