PT-2009-2900 · Microsoft · Office Powerpoint

Published

2009-05-12

·

Updated

2018-10-12

·

CVE-2009-0225

CVSS v2.0

9.3

High

VectorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Microsoft Office PowerPoint 2002 SP3 Microsoft Office PowerPoint (affected versions not specified)
Description A remote code execution issue exists in the way Microsoft Office PowerPoint handles specially crafted files, potentially leading to memory corruption due to improper array indexing. This could be exploited by an attacker creating a specially crafted PowerPoint file, which could be distributed as an email attachment or hosted on a compromised website.
Recommendations For Microsoft Office PowerPoint 2002 SP3, consider applying security patches or updates to resolve the issue. For other affected versions of Microsoft Office PowerPoint, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Code Injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2009-0225

Affected Products

Office Powerpoint