MalwareTeks Blog » Blog Archive » Microsoft PowerPoint Document Handling Client-Side Code Execution Vulnerability


 27 Sep 2006 @ 10:23 PM 
 

Microsoft PowerPoint Document Handling Client-Side Code Execution Vulnerability

 

A vulnerability has been identified in Microsoft PowerPoint, which could be exploited by attackers to take complete control of an affected system. This flaw is due to a memory corruption error when handling a malformed presentation, which could be exploited by attackers to execute arbitrary commands by tricking a user into opening a specially crafted document.

Note : This zero-day vulnerability is currently being exploited in the wild by Trojan.Controlppt.W and Trojan.Controlppt.X (also known as PPDropper.F and Exploit-PPT.d).

Affected Products
Microsoft PowerPoint 2000
Microsoft PowerPoint 2002
Microsoft PowerPoint 2003
Microsoft PowerPoint 2004 for Mac
Microsoft PowerPoint 2004 v. X for Mac

Solution
Use PowerPoint Viewer 2003 to open and view files :
http://www.microsoft.com/downloads/details.aspx?FamilyID=428d5727-43ab -4f24-90b7-a94784af71a4

Do not open or save Office documents received from un-trusted sources.

Microsoft Security Advisory (925984)
Vulnerability in PowerPoint Could Allow Remote Code Execution

Share our articles with others by publishing them to:
  • Digg
  • Reddit
  • del.icio.us
  • Slashdot
  • StumbleUpon
  • Technorati
  • blogmarks
  • Furl
  • YahooMyWeb
  • Fark
Tags Tags: ,
Categories: Uncategorized
Posted By: ShadowPuterDude
Last Edit: 29 Sep 2006 @ 06 23 PM
189 views
E-mailPermalink
 

Responses to this post » (None)

 


Comments are open. Feel free to leave a comment below.


 

Leave A Comment ...

 

 XHTML:
You can use these tags: <a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <cite> <code> <del datetime=""> <em> <i> <q cite=""> <strike> <strong>
\/ More Options ...
Change Theme...
  • Users » 9
  • Posts/Pages » 187
  • Comments » 116
Change Theme...
  • VoidVoid « Default
  • LifeLife
  • EarthEarth
  • WindWind
  • WaterWater
  • FireFire
  • LiteLight
  • No Child Pages.
  • No Child Pages.
  • No Child Pages.
  • No Child Pages.
  • No Child Pages.
  • No Child Pages.