|
|
|
Vulnerability Note VU#923236Microsoft Windows ART image handling buffer overflowOverviewMicrosoft Windows ART image handling routines are vulnerable to a heap-based buffer overflow. This vulnerability may allow a remote, unauthenticated attacker to execute arbitrary code on a vulnerable system.I. DescriptionART ImagesAccording to Microsoft Security Bulletin MS06-022:
Microsoft Windows fails to properly handle malformed ART images allowing in a heap-based buffer overflow to occur. If a remote attacker can persuade a user to access specially crafted ART image, that attacker may be able to trigger the overflow. Considerations According to Microsoft Security Bulletin MS06-022:
For more information refer to Microsoft Security Bulletin MS06-022. II. ImpactA remote, unauthenticated attacker may be able to execute arbitrary code. If the attacked user is running with administrative privileges, the attacker could take complete control of an affected system.III. SolutionApply a patch from MicrosoftMicrosoft addresses this vulnerability with the updates listed in Microsoft Security Bulletin MS06-022.
References
This vulnerability was reported by iDefense. This document was written by Jeff Gennari.
If you have feedback, comments, or additional information about this vulnerability, please send us
email. |
|||||||||||||||||||||||||||||||||||
|
||||||||||||||||||||||||||||||||||||