Secunia Logo
 
Microsoft Office PowerPoint Multiple Vulnerabilities
Secunia Advisory: SA31453
Release Date: 2008-08-12
Last Update: 2008-08-21
Popularity: 6,784 views

Critical:
Highly critical
Impact: System access
Where: From remote
Solution Status: Vendor Patch

Software:Microsoft Office 2000
Microsoft Office 2003 Professional Edition
Microsoft Office 2003 Small Business Edition
Microsoft Office 2003 Standard Edition
Microsoft Office 2003 Student and Teacher Edition
Microsoft Office 2004 for Mac
Microsoft Office 2007
Microsoft Office Compatibility Pack for Word, Excel, and PowerPoint 2007 File Formats
Microsoft Office PowerPoint 2007
Microsoft Office PowerPoint Viewer 2003
Microsoft Office XP
Microsoft PowerPoint 2000
Microsoft PowerPoint 2002
Microsoft Powerpoint 2003

Binary Analysis: BA541 :: Available for 1 Credit

Subscribe: Instant alerts on relevant vulnerabilities

CVE reference:CVE-2008-0120
CVE-2008-0121
CVE-2008-1455


Description:
Some vulnerabilities have been reported in Microsoft PowerPoint, which can be exploited by malicious people to compromise a user's system.

1) An integer overflow error when handling CString objects can be exploited to corrupt memory via a specially crafted PowerPoint file.

2) A memory calculation error when processing malformed picture indexes can be exploited to corrupt memory via a specially crafted PowerPoint file.

3) A memory calculation error when processing list values can be exploited to corrupt memory via a specially crafted PowerPoint file.

Successful exploitation of the vulnerabilities may allow execution of arbitrary code.

Solution:
Apply patches.

Microsoft Office PowerPoint 2000 SP3:
http://www.microsoft.com/downloads/de...=e7c044d8-778a-4985-b25b-4f7f6e4abadd

Microsoft Office PowerPoint 2002 SP3:
http://www.microsoft.com/downloads/de...=f8921074-7985-4d42-ac2b-d2f3b1d466ba

Microsoft Office PowerPoint 2003 SP2:
http://www.microsoft.com/downloads/de...=7a7c21f0-5e0e-4dee-9710-1ce3d565913f

Microsoft Office PowerPoint 2003 SP3:
http://www.microsoft.com/downloads/de...=7a7c21f0-5e0e-4dee-9710-1ce3d565913f

Microsoft Office PowerPoint 2007:
http://www.microsoft.com/downloads/de...=55fd618a-e9c5-4f1e-b9a5-b2e47ec98ef1

Microsoft Office PowerPoint 2007 SP1:
http://www.microsoft.com/downloads/de...=55fd618a-e9c5-4f1e-b9a5-b2e47ec98ef1

Microsoft Office PowerPoint Viewer 2003:
http://www.microsoft.com/downloads/de...=911c8872-dec8-4b8e-9708-93dcabd3e036

Microsoft Office Compatibility Pack for Word, Excel, and PowerPoint 2007 File Formats:
http://www.microsoft.com/downloads/de...=84ce5d58-0010-4945-bce9-67a41f898f2f

Microsoft Office Compatibility Pack for Word, Excel, and PowerPoint 2007 File Formats SP1:
http://www.microsoft.com/downloads/de...=84ce5d58-0010-4945-bce9-67a41f898f2f

Microsoft Office 2004 for Mac:
http://www.microsoft.com/downloads/de...=EBD3AF0C-3F62-4D18-BF45-881655683BD5

NOTE: Microsoft has released new update packages for Microsoft Office PowerPoint 2003 Service Pack 2 and Microsoft Office PowerPoint 2003 Service Pack 3. Please see the vendor's advisory for further details.

Provided and/or discovered by:
1,2) Ruben Santamarta, Reversemode.com via iDefense Labs.
3) The vendor credits ADLab, Venustech.

Changelog:
2008-08-13: Updated "Description". Added links to iDefense Labs.
2008-08-21: Added note to "Solution" section about new update packages for Microsoft Office PowerPoint 2003.

Original Advisory:
MS08-051 (KB949785):
http://www.microsoft.com/technet/security/Bulletin/MS08-051.mspx

iDefense:
http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=738
http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=739


Track this Secunia Advisory
Customers of the Secunia Vulnerability Intelligence solutions will automatically receive updates when new information regarding this advisory is released.

Read more about our Vulnerability Intelligence solutions and what they can do for you and your company.

About this Secunia Advisory
Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.

Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.
  
Latest Advisories

Today
New advisories: 4
New vulnerabilities: 6
Updated advisories: 10

Moderately // 90 views
Ubuntu update for imagemagick
Moderately // 80 views
Ubuntu update for libvorbis
Less // 79 views
Debian update for phpmyadmin

1st Dec, 2008
New advisories: 33
New vulnerabilities: 55
Updated advisories: 56


Solutions | More...  


Send Feedback to Secunia
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.

Ideas, suggestions, and other feedback are most welcome.

Most Popular - 3 Hours

1. ClamAV "cli_check_jpeg_exploit()" Denial of Service Vulnerability // 154 views
2. Ubuntu update for imagemagick // 81 views
3. Ubuntu update for libvorbis // 73 views
4. Debian update for phpmyadmin // 72 views
5. VLC Media Player Real Demuxer Integer Overflow Vulnerability // 68 views
6. Microsoft Office Communications Server SIP INVITE Denial of Service // 65 views
7. Sun Java JDK / JRE Multiple Vulnerabilities // 56 views
8. RakhiSoftware Shopping Cart Multiple Vulnerabilities // 36 views
9. Basic PHP CMS "id" SQL Injection Vulnerability // 28 views
10. Adobe Flash Player Multiple Security Issues and Vulnerabilities // 27 views