Aller au contenu
Appaloosa Scout
HIGH 8.8 KEV

CVE-2009-0556

Microsoft Office PowerPoint 2000 SP3, 2002 SP3, and 2003 SP3, and PowerPoint in Microsoft Office 2004 for Mac, allows remote attackers to execute arbitrary code via a PowerPoint file with an OutlineTextRefAtom containing an an invalid index value that triggers memory corruption, as exploited in the wild in April 2009 by Exploit:Win32/Apptom.gen, aka "Memory Corruption Vulnerability."

CVSS v3 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

CISA Known Exploited Vulnerability

Ajouté au KEV
2026-01-07
Deadline remédiation
2026-01-28
Action requise
Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.
Ransomware
Non

Apps mobiles affectées

Configurations CPE vulnérables

Vendor Produit Plateforme Versions CPE 2.3 URI
microsoft powerpoint Android cpe:2.3:a:microsoft:powerpoint:2000:sp3:*:*:*:*:*:*
microsoft powerpoint iOS cpe:2.3:a:microsoft:powerpoint:2000:sp3:*:*:*:*:*:*
microsoft powerpoint Android cpe:2.3:a:microsoft:powerpoint:2002:sp3:*:*:*:*:*:*
microsoft powerpoint iOS cpe:2.3:a:microsoft:powerpoint:2002:sp3:*:*:*:*:*:*
microsoft powerpoint Android cpe:2.3:a:microsoft:powerpoint:2003:sp3:*:*:*:*:*:*
microsoft powerpoint iOS cpe:2.3:a:microsoft:powerpoint:2003:sp3:*:*:*:*:*:*
Voir sur NVD ↗ Catalogue CISA KEV ↗