EIP-2026-115748

PRE-CVE

Microsoft Office PowerPoint 2010 - 'MSO!Ordinal5429' Missing Length Check Heap Corruption

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-115748. PoCs published by Google Security Research.

AI-analyzed exploit summary This exploit demonstrates a heap memory corruption vulnerability in Microsoft Office 2010, leading to an access violation and potential out-of-bounds memory write. The crash is non-deterministic but highly reliable under specific conditions, as observed with Application Verifier enabled.

Description

Microsoft Office PowerPoint 2010 - 'MSO!Ordinal5429' Missing Length Check Heap Corruption

Exploits (1)

exploitdb WORKING POC VERIFIED
by Google Security Research · textdoswindows
https://www.exploit-db.com/exploits/41417

This exploit demonstrates a heap memory corruption vulnerability in Microsoft Office 2010, leading to an access violation and potential out-of-bounds memory write. The crash is non-deterministic but highly reliable under specific conditions, as observed with Application Verifier enabled.

Classification
Working Poc 90%
Attack Type
Dos
Complexity
Moderate
Reliability
Racy
Target: Microsoft Office 2010 on Windows 7 x86
No auth needed
Prerequisites: Microsoft Office 2010 installed on Windows 7 x86 · Application Verifier enabled for reliability
devstral-2 · analyzed Feb 16, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026