We use cookies to provide you with a better experience. If you continue to use this site, we'll assume you're happy with this. Alternatively, click here to find out how to manage these cookies

hide cookie message
80,259 News Articles

Microsoft fixes bug in Producer for PowerPoint

Software giant warned of critical flaw last month

Microsoft has released a new version of its Producer software, fixing a critical security problem that plagued the product for several months.

Producer is a free add-on tool that helps users capture and add multimedia components to their PowerPoint presentations.

Last March, Microsoft warned of a critical security bug in the product, but it didn't release a new update. Instead, it said that Producer 2003 users should simply uninstall their software. On Monday, however, it posted an update, and is now recommending that "all customers using Producer 2003 upgrade to the new version", according to a blog post from the Microsoft Security Response Center.

Back in March, Microsoft said it was not updating Producer 2003 because it wasn't designed for automatic updates. "Based on our investigation, we determined that the best way to protect the vast majority of customers was to release an update addressing the components that shipped with Windows," Microsoft said in a blog post. "We recommend that customers either uninstall the application or apply an available Microsoft Fix It to disassociate the project file type from the application to add an extra layer of security."

The flaw, which has to do with the way Producer reads certain file formats, also affects Windows Movie Maker. But Microsoft issued a Movie Maker patch when it first warned of the issue in March. A similar product, Windows Live Movie Maker - which runs on Vista and Windows 7 - is not affected by the issue.

Microsoft doesn't know of anyone exploiting the bug in online attacks, but it's worried that hackers might be able to use it to install unauthorised software on victims' computers.

"Producer 2003 was a little-known product," said Andrew Storms, director of security operations with security vendor nCircle, via instant message. "What we have is the official replacement for the flawed product."

See also:

Microsoft launches Windows Fix-It tool

PC security advice

IDG UK Sites

Best camera phone of 2015: iPhone 6 Plus vs LG G4 vs Galaxy S6 vs One M9 vs Nexus 6

IDG UK Sites

In defence of BlackBerrys

IDG UK Sites

Why we should reserve judgement on Apple ditching Helvetica in OS X/iOS for the Apple Watch's San...

IDG UK Sites

Retina 3.3GHz iMac 27in preview: Apple cuts £400 of price of Retina iMac with new model