 |
|
|
|
Microsoft Windows XP/2003 Picture and Fax Viewer / Wine / ME code execution updated since 28.12.2005 | | Published: |  | 14.07.2006 | | Source: |  | BUGTRAQ | | SecurityVulns ID: |  | 5578 | | Type: |  | client | | Level: |  | 9/10 | | Description: |  | Buffer overflow on parsing WMF metafiles. It may be used for silent Spyware/Trojan installation with Internet Explorer or another browser and also with Lotus Notes. There are vulnerabilities not covered by MS06-001. |
| Original document |  | SYMANTEC, SYMSA-2006-004 (Full Details): Vulnerability in Graphics Rendering Engine Could Allow Remote Code Execution (14.07.2006) |
| |  | SYMANTEC, SYMSA-2006-004: Vulnerability in Graphics Rendering Engine Could Allow Remote Code Execution (14.06.2006) |
| |  | MICROSOFT, Microsoft Security Bulletin MS06-026 Vulnerability in Graphics Rendering Engine Could Allow Remote Code Execution (918547) (13.06.2006) |
| |  | frankruder_(at)_hotmail.com, Microsoft Windows GRE WMF Format Multiple Memory Overrun Vulnerabilities (10.01.2006) |
| |  | frankruder_(at)_hotmail.com, [UPDATE]Microsoft Windows GRE WMF Format Multiple Unauthorized Memory Access Vulnerabilities (10.01.2006) |
| |  | MICROSOFT, Microsoft Security Bulletin MS06-001 Vulnerability in Graphics Rendering Engine Could Allow Remote Code Execution (912919) (07.01.2006) |
| |  | CERT, US-CERT Technical Cyber Security Alert TA06-005A -- Update for Microsoft Windows Metafile Vulnerability (07.01.2006) |
| |  | Juha-Matti Laurio, Lotus Notes WMF File Handling Code Execution Vulnerability (30.12.2005) |
| |  | CERT, US-CERT Technical Cyber Security Alert TA05-362A -- Microsoft Windows Metafile Handling Buffer Overflow (29.12.2005) |
| |  | X-FORCE, ISS Protection Alert: Windows Picture and Fax Viewer WMF Overflow (29.12.2005) |
| |  | H D Moore, [Full-disclosure] Someone wasted a nice bug on spyware... (28.12.2005) |
| |  | noemailpls_(at)_noemail.ziper, Is this a new exploit? (28.12.2005) |
|
|
|
|
|
|
|
|