CVE Vulnerabilities

CVE-2019-1462

Use of Uninitialized Resource

Published: Dec 10, 2019 | Modified: Aug 24, 2020
CVSS 3.x
7.8
HIGH
Source:
NVD
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
CVSS 2.x
9.3 HIGH
AV:N/AC:M/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

A remote code execution vulnerability exists in Microsoft PowerPoint software when the software fails to properly handle objects in memory, aka Microsoft PowerPoint Remote Code Execution Vulnerability.

Weakness

The product uses or accesses a resource that has not been initialized.

Affected Software

Name Vendor Start Version End Version
Office Microsoft 2016 (including) 2016 (including)
Office Microsoft 2019 (including) 2019 (including)
Office_365_proplus Microsoft - (including) - (including)
Powerpoint Microsoft 2010-sp2 (including) 2010-sp2 (including)
Powerpoint Microsoft 2013-sp1 (including) 2013-sp1 (including)
Powerpoint Microsoft 2016 (including) 2016 (including)

Potential Mitigations

References