Vulnerability Name: | CVE-2006-5296 (CCN-29507) | ||||||||
Assigned: | 2006-10-12 | ||||||||
Published: | 2006-10-12 | ||||||||
Updated: | 2017-10-19 | ||||||||
Summary: | PowerPoint in Microsoft Office 2003 does not properly handle a container object whose position value exceeds the record length, which allows user-assisted attackers to cause a denial of service (NULL dereference and application crash) via a crafted PowerPoint (.PPT) file, as demonstrated by Nanika.ppt, and a different vulnerability than CVE-2006-3435, CVE-2006-3876, CVE-2006-3877, and CVE-2006-4694. Note: the impact of this issue was originally claimed to be arbitrary code execution, but later analysis demonstrated that this was erroneous. | ||||||||
CVSS v3 Severity: | 3.7 Low (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L)
| ||||||||
CVSS v2 Severity: | 4.3 Medium (CVSS v2 Vector: AV:N/AC:M/Au:N/C:N/I:N/A:P) 3.9 Low (Temporal CVSS v2 Vector: AV:N/AC:M/Au:N/C:N/I:N/A:P/E:POC/RL:U/RC:C)
2.3 Low (CCN Temporal CVSS v2 Vector: AV:N/AC:H/Au:N/C:N/I:N/A:P/E:POC/RL:U/RC:C)
| ||||||||
Vulnerability Type: | CWE-Other | ||||||||
Vulnerability Consequences: | Denial of Service | ||||||||
References: | Source: CCN Type: Microsoft Security Response Center Blog, Thursday, October 12, 2006 11:40 PM PoC published for MS Office 2003 PowerPoint Source: MISC Type: UNKNOWN http://blogs.technet.com/msrc/archive/2006/10/12/poc-published-for-ms-office-2003-powerpoint.aspx Source: CCN Type: Microsoft Security Response Center Blog, Friday, November 10, 2006 10:28 PM Follow up information on weblog posting about PoC published for MS Office 2003 PowerPoint Source: CONFIRM Type: UNKNOWN http://blogs.technet.com/msrc/archive/2006/11/10/follow-up-information-on-weblog-posting-about-poc-published-for-ms-office-2003-powerpoint.aspx Source: MITRE Type: CNA CVE-2006-5296 Source: MISC Type: UNKNOWN http://research.eeye.com/html/alerts/zeroday/20061012_2.html Source: CCN Type: SA22394 Microsoft PowerPoint Invalid Container Object Denial of Service Source: SECUNIA Type: Vendor Advisory 22394 Source: CCN Type: SECTRACK ID: 1017059 Microsoft PowerPoint Bug Causes PowerPoint to Crash Source: SECTRACK Type: UNKNOWN 1017059 Source: MISC Type: UNKNOWN http://www.informationweek.com/management/showArticle.jhtml?articleID=193302553 Source: OSVDB Type: UNKNOWN 29720 Source: CCN Type: OSVDB ID: 29720 Microsoft PowerPoint Unspecified Code Execution Source: CCN Type: OSVDB ID: 35763 Microsoft PowerPoint Unspecified Arbitrary Code Execution Source: BID Type: Exploit 20495 Source: CCN Type: BID-20495 Microsoft PowerPoint Remote Denial of Service Vulnerability Source: VUPEN Type: UNKNOWN ADV-2006-4031 Source: XF Type: UNKNOWN powerpoint-presentation-null-dos(29507) Source: XF Type: UNKNOWN powerpoint-presentation-bo(29507) Source: EXPLOIT-DB Type: UNKNOWN 2523 | ||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: ![]() | ||||||||
BACK |