CVE Vulnerabilities

CVE-2019-1462

Use of Uninitialized Resource

Published: Dec 10, 2019 | Modified: Nov 21, 2024
CVSS 3.x
7.8
HIGH
Source:
NVD
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
CVSS 2.x
9.3 HIGH
AV:N/AC:M/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

A remote code execution vulnerability exists in Microsoft PowerPoint software when the software fails to properly handle objects in memory, aka Microsoft PowerPoint Remote Code Execution Vulnerability.

Weakness

The product uses or accesses a resource that has not been initialized.

Affected Software

NameVendorStart VersionEnd Version
OfficeMicrosoft2016 (including)2016 (including)
OfficeMicrosoft2019 (including)2019 (including)
Office_365_proplusMicrosoft- (including)- (including)
PowerpointMicrosoft2010-sp2 (including)2010-sp2 (including)
PowerpointMicrosoft2013-sp1 (including)2013-sp1 (including)
PowerpointMicrosoft2016 (including)2016 (including)

Potential Mitigations

References