Common Tasks

Recent Posts

Community

Email Notifications

Personal Links

Archives

Security Protection - Harry Waldron (CS)

Security Best Practices, Breaking News, & Updates

Microsoft Powerpoint - New unpatched vulnerability

Users should be careful with all Powerpoint documents (PPT file extensions) recevied by email as one new exploit is now circulating as a trojan horse in-the-wild. However, there are not widescale attacks associated with this new vulnerability. Several links are noted below

Microsoft Security Advisory (922970)
http://www.microsoft.com/technet/security/advisory/922970.mspx

Microsoft Security Response Team
http://blogs.technet.com/msrc/archive/2006/07/14/441893.aspx

ISC Information
http://www.incidents.org/diary.php?storyid=1484

McAfee Information
http://vil.nai.com/vil/content/v_125294.htm

Microsoft PowerPoint Presentation Handling Multiple Memory Corruption and DoS Vulnerabilities
http://www.frsirt.com/english/advisories/2006/2815

Microsoft PowerPoint Presentation Handling Client-Side Memory Corruption Vulnerability
http://www.frsirt.com/english/advisories/2006/2795

This zero-day vulnerability is currently being exploited in the wild by Trojan.PPDropper.B