Microsoft PowerPoint Document Handling Client-Side Code Execution Vulnerability
Technical Description



A vulnerability has been identified in Microsoft PowerPoint, whichcould be exploited by attackers to take complete control of an affectedsystem. This flaw is due to a memory corruption error when handling amalformed presentation, which could be exploited by attackers toexecute arbitrary commands by tricking a user into opening a speciallycrafted document.



Note : This zero-day vulnerability is currently being exploited in thewild by Trojan.Controlppt.W and Trojan.Controlppt.X (also known asPPDropper.F and Exploit-PPT.d).



Affected Products



Microsoft PowerPoint 2000

Microsoft PowerPoint 2002

Microsoft PowerPoint 2003

Microsoft PowerPoint 2004 for Mac

Microsoft PowerPoint 2004 v. X for Mac



Solution



Use PowerPoint Viewer 2003 to open and view files :

http://www.microsoft.com/downloads/details.aspx?FamilyID=428d5727-43ab-4f24-90b7-a94784af71a4

더보기

댓글,