HTTP: Microsoft PowerPoint Presentation Handling Remote Code Execution
This signature detects attempts to exploit a known vulnerability against Microsoft PowerPoint. A successful attack can lead to arbitrary code execution.
Extended Description
Microsoft PowerPoint is prone to a remote denial-of-service vulnerability. Successfully exploiting this issue allows a remote attacker to crash the affected application. This issue was first reported as a remote code-execution vulnerability. Microsoft's Secure Windows Initiative is now reporting that this issue is not exploitable for remote code execution. Further research has indicated that the issue is caused by a NULL-pointer dereference that apparently cannot be exploited to execute code, yet can be used to predictably crash the application.
Affected Products
Microsoft office_2003
srx-branch-12.3
srx-19.3
srx-branch-19.3
vsrx3bsd-19.2
srx-branch-19.4
vsrx-19.4
mx-12.3
mx-19.4
vmx-19.4
mx-19.3
vsrx3bsd-19.4
srx-19.4
vsrx-12.3
vmx-19.3
vsrx-19.2
srx-12.3
Microsoft
4.3