Get a Pentest and security assessment of your IT network.

Advisories

iDEFENSE Security Advisory 2008-08-12.3

iDefense Security Advisory 08.12.08 – Remote exploitation of an out of boundary array index vulnerability in Microsoft Corp.’s PowerPoint Viewer 2003 could allow an attacker to execute arbitrary code in the context of the user running the application. This vulnerability specifically exists in PowerPoint Viewer 2003 when handling certain records in a PowerPoint presentation file. In some circumstances, an array index can be directly controlled by data from within the PowerPoint presentation file. Thus, a function pointer can be directly controlled by the attacker and leveraged for arbitrary code execution. iDefense has confirmed that pptview.exe file version 11.0.5703.0 is vulnerable. Previous versions are also likely to be affected.

 

You can download this advisory from the following link: https://packetstormsecurity.com/files/download/69049/08.12.08-3.txt

Source: https://packetstormsecurity.com/files/69049/iDEFENSE-Security-Advisory-2008-08-12.3.html

Related posts
Advisories

Secunia Security Advisory 19451

Advisories

Debian Linux Security Advisory 1187-1

Advisories

Secunia Security Advisory 25209

Advisories

Secunia Security Advisory 28391