| Name | MS.Office.PowerPoint.OEPlaceholderAtom.Invalid.Array.Indexing |
| Alias/es | MS.Offfice.PowerPoint.OEPlaceholderAtom.Invalid.Array.Indexing |
| Last Updated Date | Apr 08, 2010 |
| Release Date | Feb 10, 2010 |
| Severity | Critical |
| Impact | System Compromise: Remote attackers can gain control of vulnerable systems. |
| Description | This indicates an attack attempt against a memory-corruption vulnerability in Microsoft Office PowerPoint.
The vulnerability is caused by an error when the vulnerable software handles a .ppt file that includes a malicious "OEPlaceholderAtom" atom. It may allow remote attackers to execute arbitrary code by sending a crafted PPT file. |
| Affected Products | Microsoft Office PowerPoint 2002 Service Pack 3 Microsoft Office PowerPoint 2003 Service Pack 3 |
| Recommended Actions | Refer to the vendor's web site for the suggested workaround: http://www.microsoft.com/technet/security/Bulletin/ms10-004.mspx |
| Common Vulnerabilities and Exposures (CVE) | http://cve.mitre.org/cgi-bin/cvename.cgi?name=2010-0031
|
| Microsoft Bulletin ID | MS10-004 http://www.microsoft.com/technet/security/Bulletin/ms10-004.mspx |