Lucene search

K
zdiMarsuZDI-09-019
HistoryMay 12, 2009 - 12:00 a.m.

Microsoft Office PowerPoint OutlineTextRefAtom Parsing Memory Corruption Vulnerability

2009-05-1200:00:00
Marsu
www.zerodayinitiative.com
20

EPSS

0.932

Percentile

99.1%

This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Microsoft Office PowerPoint. Exploitation requires that the attacker coerce the target into opening a malicious .PPT file. The specific flaw exists in the parsing of the OutlineTextRefAtom (3998). By specifying an invalid β€œindex” value during parsing memory corruption occurs. Proper exploitation can lead to remote code execution under the credentials of the currently logged in user.