{"id":876,"date":"2014-10-22T08:37:45","date_gmt":"2014-10-22T12:37:45","guid":{"rendered":"http:\/\/www.ccrepairservices.com\/blog\/?p=876"},"modified":"2014-10-22T08:48:59","modified_gmt":"2014-10-22T12:48:59","slug":"microsoft-powerpoint-vulnerable-to-zero-day-attack","status":"publish","type":"post","link":"https:\/\/www.ccrepairservices.com\/blog\/computer-news\/microsoft-powerpoint-vulnerable-to-zero-day-attack\/","title":{"rendered":"Microsoft PowerPoint Vulnerable to Zero-Day Attack"},"content":{"rendered":"<p><img loading=\"lazy\" decoding=\"async\" id=\"greasedLightboxImage\" class=\"aligncenter\" src=\"https:\/\/screenshots.en.sftcdn.net\/en\/scrn\/6653000\/6653678\/microsoft-powerpoint-2013-11-535x535.png\" alt=\"\" width=\"305\" height=\"305\" \/><\/p>\n<header class=\"storyHeader\">\n<h1>New Windows zero day being exploited through PowerPoint<\/h1>\n<p class=\"summary\">Summary: A vulnerability exists in Windows OLE for all versions except Server 2003. The company has released a workaround to block known attacks, but newer attacks could still get through.<\/p>\n<div class=\"byline\">\n<h2 class=\"article-intro-text\"><span style=\"color: #00ffff;\">All Windows versions affected except Server 2003<\/span><\/h2>\n<\/div>\n<\/header>\n<div class=\"storyBody\">\n<p><span style=\"color: #ff6600;\"><a style=\"color: #ff6600;\" href=\"https:\/\/technet.microsoft.com\/library\/security\/3010060\">Microsoft has disclosed<\/a><\/span> a vulnerability affecting all supported releases of Microsoft Windows, excluding Windows Server 2003. The attack is being exploited through limited, targeted attacks using Microsoft PowerPoint.<\/p>\n<p>Microsoft has released <span style=\"color: #ff6600;\"><a style=\"color: #ff6600;\" href=\"https:\/\/support.microsoft.com\/kb\/3010060\">a Fix it &#8220;OLE packager Shim Workaround&#8221;<\/a><\/span> that should stop the known PowerPoint attacks. It does not stop other attacks that might be built to exploit this vulnerability.\u00a0The Fix it is not available for 64-bit editions of PowerPoint on x64-based editions of Windows 8 and Windows 8.1.<\/p>\n<p>There are some important mitigating factors for this problem. It is a remote code execution vulnerability, so if a user opens an affected Office document, the attacker would gain control of the system with the same privileges as the user. Using Windows with limited permissions limits the damage this attack can cause.<\/p>\n<blockquote><p>Microsoft reports that in the attacks they know of, a User Account Control (UAC) prompt was raised when the user opened the document. This is not typical behavior and should alert many users that something is wrong.<\/p><\/blockquote>\n<p>Attacks could be sent through files other than Microsoft Office documents, if the handling application supports OLE objects. In reality, Office documents are the obvious vehicle for spreading such an attack.<\/p>\n<p><span style=\"color: #ff9900;\"><a style=\"color: #ff9900;\" href=\"https:\/\/technet.microsoft.com\/library\/security\/3010060\">The security advisory describing the problem<\/a><\/span>\u00a0also includes instructions for configuring the Enhanced Mitigation Experience Toolkit 5.0 to protect against the known attacks.<\/p>\n<p>&nbsp;<\/p>\n<h2 style=\"text-align: center;\"><span style=\"color: #00ff00;\">Please Visit our <a href=\"https:\/\/www.ccrepairservices.com\">Computer News Website and Blog<\/a><\/span><\/h2>\n<h1 style=\"text-align: center;\"><span style=\"color: #ff6600;\"> for latest computer repair and online news.<\/span><\/h1>\n<h2 style=\"text-align: center;\"><span style=\"color: #993300;\">Local and Online Virus removal and computer repairs anytime, anywhere<\/span><\/h2>\n<p style=\"text-align: center;\">Fort Lauderdale, Miami, Boca Raton, Boynton Beach and all South Florida<\/p>\n<\/div>\n","protected":false},"excerpt":{"rendered":"<p>New Windows zero day being exploited through PowerPoint Summary: A vulnerability exists in Windows OLE for all versions except Server 2003. The company has released a workaround to block known attacks, but newer attacks could still get through. All Windows versions affected except Server 2003 Microsoft has disclosed a vulnerability affecting all supported releases of Microsoft Windows, excluding Windows Server 2003. The attack is being exploited through limited, targeted attacks using Microsoft PowerPoint. Microsoft has released a Fix it &#8220;OLE packager Shim Workaround&#8221; that should stop the known PowerPoint attacks. It does not stop other attacks that might be built to exploit this vulnerability.\u00a0The Fix it is not available for 64-bit editions of PowerPoint on x64-based editions of Windows 8 and Windows 8.1. There are some important mitigating factors for this problem. It is a remote code execution vulnerability, so if a user opens an affected Office document, the attacker would gain control of the system with the same privileges as the user. Using Windows with limited permissions limits the damage this attack can cause. Microsoft reports that in the attacks they know of, a User Account Control (UAC) prompt was raised when the user opened the document. This is [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[3],"tags":[493,486,228,628,94,1240,1239,1232,1238,1234,451,1231,1233,1237,113,1008,1241,59,1236,1235],"class_list":["post-876","post","type-post","status-publish","format-standard","hentry","category-computer-news","tag-fort-lauderdale-news","tag-latest-news","tag-local-computer-repair","tag-local-news","tag-microsoft","tag-microsoft-office","tag-microsoft-products","tag-office","tag-office-products","tag-office-vulnerability","tag-online-news","tag-powerpoint","tag-powerpoint-vulnerability","tag-powerpoint-workaround","tag-security","tag-security-news","tag-south-florida-news","tag-windows","tag-zero-day","tag-zero-day-vulnerability"],"_links":{"self":[{"href":"https:\/\/www.ccrepairservices.com\/blog\/wp-json\/wp\/v2\/posts\/876","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.ccrepairservices.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.ccrepairservices.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.ccrepairservices.com\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.ccrepairservices.com\/blog\/wp-json\/wp\/v2\/comments?post=876"}],"version-history":[{"count":5,"href":"https:\/\/www.ccrepairservices.com\/blog\/wp-json\/wp\/v2\/posts\/876\/revisions"}],"predecessor-version":[{"id":881,"href":"https:\/\/www.ccrepairservices.com\/blog\/wp-json\/wp\/v2\/posts\/876\/revisions\/881"}],"wp:attachment":[{"href":"https:\/\/www.ccrepairservices.com\/blog\/wp-json\/wp\/v2\/media?parent=876"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.ccrepairservices.com\/blog\/wp-json\/wp\/v2\/categories?post=876"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.ccrepairservices.com\/blog\/wp-json\/wp\/v2\/tags?post=876"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}