Microsoft Powerpoint - New unpatched vulnerability
Users should be careful with all Powerpoint documents (PPT file extensions) recevied by email as one new exploit is now circulating as a trojan horse in-the-wild. However, there are not widescale attacks associated with this new vulnerability. Several links are noted below
Microsoft Security Advisory (922970)
http://www.microsoft.com/technet/security/advisory/922970.mspx
Microsoft Security Response Team
http://blogs.technet.com/msrc/archive/2006/07/14/441893.aspx
ISC Information
http://www.incidents.org/diary.php?storyid=1484
McAfee Information
http://vil.nai.com/vil/content/v_125294.htm
Microsoft PowerPoint Presentation Handling Multiple Memory Corruption and DoS Vulnerabilities
http://www.frsirt.com/english/advisories/2006/2815
Microsoft PowerPoint Presentation Handling Client-Side Memory Corruption Vulnerability
http://www.frsirt.com/english/advisories/2006/2795
This zero-day vulnerability is currently being exploited in the wild by Trojan.PPDropper.B