Secunia Research has discovered a vulnerability in Microsoft PowerPoint, which can be exploited by malicious people to compromise a user’s system. The vulnerability is caused by an array-indexing error in the Microsoft PowerPoint Freelance Windows 2.1 Translator (FL21WIN.DLL) when parsing layout information and can be exploited to cause a heap-based buffer overflow. Successful exploitation allows execution of arbitrary code. PowerPoint versions 2000 and 2002 are affected.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/78261/secunia-mppflp.txt
Source: https://packetstormsecurity.com/files/78261/Microsoft-PowerPoint-Freelance-Layout-Parsing-Vulnerability.html

