News

Tuesday's Patch Will Target PowerPoint Security

Microsoft plans to roll out only one "critical" patch on Tuesday, affecting PowerPoint, for its May security update.

This update will be like a slide show that IT pros have seen before. It comes one month after a zero-day PowerPoint remote code execution vulnerability came to light for which the software giant issued a security advisory.

In that April security advisory, Redmond indicated that it was only "aware of limited and targeted attacks that attempt to use this vulnerability." Moreover, the advisory applied only to older Microsoft Office versions up through Office 2003.

With May's patch release coming up, the company apparently isn't taking any chances. This fix will apply to Microsoft Office 2000 and Office 2003, as well as Office XP and 2007 Microsoft Office systems.

At a more granular level, the patch touches on PowerPoint Viewer 2003 Service Pack 3, PowerPoint Viewer 2007 SP1 and SP2, and all versions of Microsoft Office Compatibility Packs for Word, Excel, and PowerPoint 2007 file formats.

The new PowerPoint security flaw has been described as "extremely critical" by independent software security vendors, such as Denmark-based Secunia, which provides an alert here.

Redmond says the patch "may" require a restart.

As usual, Microsoft refers those interested in nonsecurity updates delivered through Windows Update, Microsoft Update and Windows Server Updates to this Knowledgebase link.

About the Author

Jabulani Leffall is an award-winning journalist whose work has appeared in the Financial Times of London, Investor's Business Daily, The Economist and CFO Magazine, among others.

Featured

  • Microsoft Appoints Althoff as New CEO for Commercial Business

    Microsoft CEO and chairman Satya Nadella on Wednesday announced the promotion of Judson Althoff to CEO of the company's commercial business, presenting the move as a response to the dramatic industrywide shifts caused by AI.

  • Broadcom Revamps VMware Partner Program Again

    Broadcom recently announced a significant update regarding its VMware Cloud Service Provider (VCSP) program, coinciding with the release of VMware Cloud Foundation (VCF) 9.0, a key component in Broadcom’s private cloud strategy.

  • Closeup of the new Copilot keyboard key

    Microsoft Updates Copilot To Add Context-Sensitive Agents to Teams, SharePoint

    Microsoft has rolled out a new public preview for collaborative "always on" agents in Microsoft 365 Copilot, bringing enhanced, context-aware tools into Teams channels, meetings, SharePoint sites, Planner workstreams and Viva Engage communities.

  • Windows 365 Cloud Apps Now Available for Public Preview

    Microsoft announced this week that Windows 365 Cloud Apps are now available for public preview. This aims to allow IT administrators to stream individual Windows applications from the cloud, removing the need to assign Cloud PCs to every user.