First published: Mon Nov 11 2013(Updated: )
Heap-based buffer overflow in the __OLEdecode function in ppthtml 0.5.1 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted .ppt file.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
debian/xlhtml | ||
Debian Ppthtml | <=0.5.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2013-4565 is considered high severity due to its potential for remote code execution and denial of service.
To fix CVE-2013-4565, upgrade to a version of ppthtml that is newer than 0.5.1.
CVE-2013-4565 can be exploited to crash applications and potentially execute arbitrary code through specially crafted .ppt files.
CVE-2013-4565 affects ppthtml versions 0.5.1 and earlier, available in Debian and associated packages.
Systems running ppthtml 0.5.1 or earlier are vulnerable to CVE-2013-4565 if they process .ppt files.