PT-2009-2900 · Microsoft · Office Powerpoint
Published
2009-05-12
·
Updated
2018-10-12
·
CVE-2009-0225
CVSS v2.0
9.3
High
| Vector | AV:N/AC:M/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Microsoft Office PowerPoint 2002 SP3
Microsoft Office PowerPoint (affected versions not specified)
Description
A remote code execution issue exists in the way Microsoft Office PowerPoint handles specially crafted files, potentially leading to memory corruption due to improper array indexing. This could be exploited by an attacker creating a specially crafted PowerPoint file, which could be distributed as an email attachment or hosted on a compromised website.
Recommendations
For Microsoft Office PowerPoint 2002 SP3, consider applying security patches or updates to resolve the issue.
For other affected versions of Microsoft Office PowerPoint, at the moment, there is no information about a newer version that contains a fix for this vulnerability.
RCE
Code Injection
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Office Powerpoint