|
|||
Rule General Information |
---|
Release Date: | 2010-03-09 | |
Rule Name: | Microsoft Office PowerPoint Invalid Object Reference Code Execution Vulnerability (CVE-2009-0556) | |
Severity: | ||
CVE ID: | ||
Rule Protection Details |
---|
Description: | Microsoft Office PowerPoint 2000 SP3, 2002 SP3, and 2003 SP3, and PowerPoint in Microsoft Office 2004 for Mac, allows remote attackers to execute arbitrary code via a PowerPoint file with an OutlineTextRefAtom containing an an invalid index value that triggers memory corruption, as exploited in the wild in April 2009 by Exploit:Win32/Apptom.gen, aka "Memory Corruption Vulnerability." | |
Impact: | Remote code execution | |
Affected OS: | Windows | |
Reference: | CVE-2009-0556 SecurityFocusBID:34351 SecurityAdvisory:SA34572 |
|
Solutions |
---|
Update vendor's patch. |