Vulnerabilities > Microsoft > Office Powerpoint > Critical

DATE CVE VULNERABILITY TITLE RISK
2009-05-12 CVE-2009-1129 Buffer Errors vulnerability in Microsoft Office Powerpoint 2000/2002/2003
Multiple stack-based buffer overflows in the PowerPoint 95 importer (PP7X32.DLL) in Microsoft Office PowerPoint 2000 SP3, 2002 SP3, and 2003 SP3 allow remote attackers to execute arbitrary code via an inconsistent record length in sound data in a file that uses a PowerPoint 95 (PPT95) native file format, aka "PP7 Memory Corruption Vulnerability," a different vulnerability than CVE-2009-1128.
network
microsoft CWE-119
critical
9.3
2009-05-12 CVE-2009-1130 Buffer Errors vulnerability in Microsoft Office and Office Powerpoint
Heap-based buffer overflow in Microsoft Office PowerPoint 2002 SP3 and 2003 SP3, and PowerPoint in Microsoft Office 2004 for Mac, allows remote attackers to execute arbitrary code via a crafted structure in a Notes container in a PowerPoint file that causes PowerPoint to read more data than was allocated when creating a C++ object, leading to an overwrite of a function pointer, aka "Heap Corruption Vulnerability."
network
microsoft CWE-119
critical
9.3
2009-05-12 CVE-2009-1131 Buffer Errors vulnerability in Microsoft Office Powerpoint 2000
Multiple stack-based buffer overflows in Microsoft Office PowerPoint 2000 SP3 allow remote attackers to execute arbitrary code via a large amount of data associated with unspecified atoms in a PowerPoint file that triggers memory corruption, aka "Data Out of Bounds Vulnerability."
network
microsoft CWE-119
critical
9.3
2009-05-12 CVE-2009-1137 Buffer Errors vulnerability in Microsoft Office Powerpoint 2000/2002/2003
Microsoft Office PowerPoint 2000 SP3, 2002 SP3, and 2003 SP3 allows remote attackers to execute arbitrary code via crafted sound data in a file that uses a PowerPoint 4.0 native file format, leading to memory corruption, aka "Legacy File Format Vulnerability," a different vulnerability than CVE-2009-0222, CVE-2009-0223, CVE-2009-0226, and CVE-2009-0227.
network
microsoft CWE-119
critical
9.3
2009-04-03 CVE-2009-0556 Code Injection vulnerability in Microsoft Office Powerpoint and Powerpoint
Microsoft Office PowerPoint 2000 SP3, 2002 SP3, and 2003 SP3, and PowerPoint in Microsoft Office 2004 for Mac, allows remote attackers to execute arbitrary code via a PowerPoint file with an OutlineTextRefAtom containing an an invalid index value that triggers memory corruption, as exploited in the wild in April 2009 by Exploit:Win32/Apptom.gen, aka "Memory Corruption Vulnerability."
network
microsoft CWE-94
critical
9.3