First published: Wed Aug 13 2008(Updated: )
Integer overflow in Microsoft PowerPoint Viewer 2003 allows remote attackers to execute arbitrary code via a PowerPoint file with a malformed picture index that triggers memory corruption, related to handling of CString objects, aka "Memory Allocation Vulnerability."
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Office PowerPoint | =2003 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-0120 has a high severity rating due to its potential to allow remote code execution.
The recommended fix for CVE-2008-0120 is to update to a newer version of Microsoft PowerPoint Viewer that addresses this vulnerability.
CVE-2008-0120 can be exploited through specially crafted PowerPoint files that trigger memory corruption.
Users of Microsoft PowerPoint Viewer 2003 are primarily affected by CVE-2008-0120.
An attacker needs to send a malformed PowerPoint file to the victim, who must open it using PowerPoint Viewer 2003.