Gravità: : Critico
  Identificatori CVE: CVE-2009-0556
  Data notifica: 04 marzo 2011

  Descrizione

Microsoft Office PowerPoint 2000 SP3, 2002 SP3, and 2003 SP3, and PowerPoint in Microsoft Office 2004 for Mac, allows remote attackers to execute arbitrary code via a PowerPoint file with an OutlineTextRefAtom containing an an invalid index value that triggers memory corruption, as exploited in the wild in April 2009 by Exploit:Win32/Apptom.gen, aka "Memory Corruption Vulnerability."

  Informazioni esposizione:

Trend Micro Deep Security shields networks through Deep Packet Inspection (DPI) rules. Trend Micro customers using OfficeScan with Intrusion Defense Firewall (IDF) plugin are also protected from attacks using these vulnerabilities. Please refer to the filter number and filter name when applying appropriate DPI and/or IDF rules.

  Software e versione interessati:

  • Microsoft Powerpoint 2003
  • Microsoft Powerpoint 2002
  • Microsoft Powerpoint 2000
  • Microsoft Office Powerpoint 2004