Description: Multiple vulnerabilities have been reported in Microsoft PowerPoint, which can be exploited by malicious people to compromise a user's system.
1) An unspecified error when processing PowerPoint documents containing a malformed string can be exploited to corrupt system memory and may allow execution of arbitrary code when a malicious PowerPoint document is opened.
NOTE: This vulnerability is reportedly being exploited in the wild.
2) An unspecified error when processing PowerPoint documents containing a malformed object pointer can be exploited to corrupt system memory and may allow execution of arbitrary code when a malicious PowerPoint document is opened.
3) An unspecified error when processing PowerPoint documents containing a malformed data record can be exploited to corrupt system memory and may allow execution of arbitrary code when a malicious PowerPoint document is opened.
4) An unspecified error when processing PowerPoint documents containing a malformed record can be exploited to corrupt system memory and may allow execution of arbitrary code when a malicious PowerPoint document is opened.
Do you have this product installed on your home computer? Scan using the free Personal Software Inspector. Check if a vulnerable version is installed on computers in your corporate network, scan using the Network Software Inspector.
Microsoft Office 2004 for Mac / Microsoft PowerPoint 2004 for Mac:
Download the update (KB924999) http://www.microsoft.com/mac/
Microsoft Office v. X for Mac / Microsoft PowerPoint v. X for Mac:
Download the update (KB924998) http://www.microsoft.com/mac/
Provided and/or discovered by: 1) Reported by the vendor.
2) The vendor credits Arnaud Dovi.
3) Dejun Meng, Fortinet.
4) The vendor credits Chris Ries.
Changelog: 2006-10-10: The vendor releases patches. Updated "Solution" and "Original Advisory" section.
2006-10-11: Added links to Fortinet and ZDI advisories. Added links to US-CERT.
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.
Ideas, suggestions, and other feedback are most welcome.