Microsoft Windows GDI+ Multiple Vulnerabilities( 14 October 2009 )
RISK: Medium Risk
1. GDI+ WMF Integer Overflow Vulnerability
A remote code execution vulnerability exists in the way that GDI+ allocates buffer size when handling WMF image files. The vulnerability could allow remote code execution if a user opens a specially crafted WMF image file or browses to a Web site that contains specially crafted content. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.
2. GDI+ PNG Heap Overflow Vulnerability
A remote code execution vulnerability exists in the way that GDI+ allocates memory. The vulnerability could allow remote code execution if a user opens a specially crafted PNG image file. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.
3. GDI+ TIFF Buffer Overflow Vulnerability
A remote code execution vulnerability exists in the way that GDI+ allocates memory. The vulnerability could allow remote code execution if a user opens a specially crafted TIFF file. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.
4. GDI+ TIFF Memory Corruption Vulnerability
A remote code execution vulnerability exists in the way that GDI+ allocates memory. The vulnerability could allow remote code execution if a user opens a specially crafted TIFF file. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.
5. GDI+ .NET API Vulnerability
A remote code execution vulnerability exists in GDI+ that can allow a malicious Microsoft .NET application to gain unmanaged code execution privileges.. Microsoft .NET applications that are not malicious are not at risk for being compromised because of this vulnerability.
6. GDI+ PNG Integer Overflow Vulnerability
A remote code execution vulnerability exists in the way that GDI+ allocates memory. The vulnerability could allow remote code execution if a user opens a specially crafted PNG image file. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.
7. Memory Corruption Vulnerability
A remote code execution vulnerability exists in Microsoft Office that could allow remote code execution if a user opens a specially crafted Office file that includes a malformed object. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights.
8. Office BMP Integer Overflow Vulnerability
A remote code execution vulnerability exists in the way that Microsoft Office handles specially crafted Office Documents containing BMP images. The vulnerability could allow remote code execution if an Outlook user opens a specially crafted e-mail or opens an Office Document with a malformed Bitmap file. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.
Impact
- Remote Code Execution
System / Technologies affected
- Microsoft Windows 2000
- Windows XP
- Windows Server 2003
- Windows Vista
- Windows Server 2008
- Microsoft Internet Explorer 6
- Microsoft .NET Framework 1.1
- Microsoft .NET Framework 2.0
- Microsoft Office XP
- Microsoft Office 2003
- 2007 Microsoft Office System
- Microsoft Office Project 2002
- Microsoft Office Visio 2002
- Microsoft Office Word Viewer
- Microsoft Office Word Viewer 2003
- Microsoft Office Excel Viewer
- Microsoft Office Excel Viewer 2003
- Microsoft Office PowerPoint Viewer 2007
- Microsoft Office Compatibility Pack for Word, Excel, and PowerPoint 2007 File Formats
- Microsoft Expression Web
- Microsoft Expression Web 2
- Microsoft Office Groove 2007
- Microsoft Works 8.5
- SQL Server 2000 Reporting Services
- SQL Server 2005
- Microsoft Visual Studio .NET 2003
- Microsoft Visual Studio 2005
- Microsoft Visual Studio 2008
- Microsoft Report Viewer 2005 Redistributable Package
- Microsoft Report Viewer 2008 Redistributable Package
- Microsoft Visual FoxPro 8.0 Service Pack 1 when installed on Microsoft Windows 2000 Service Pack 4
- Microsoft Visual FoxPro 9.0 Service Pack 2 when installed on Microsoft Windows 2000 Service Pack 4
- Microsoft Platform SDK Redistributable: GDI+
- Microsoft Forefront Client Security 1.0 when installed on Microsoft Windows 2000 Service Pack 4
Solutions
Before installation of the software, please visit the software manufacturer web-site for more details.
Download locations for this patch
- Microsoft Windows
- Windows XP Service Pack 2 and Windows XP Service Pack 3
- Windows XP Professional x64 Edition Service Pack 2
- Windows Server 2003 Service Pack 2
- Windows Server 2003 x64 Edition Service Pack 2
- Windows Server 2003 with SP2 for Itanium-based Systems
- Windows Vista and Windows Vista Service Pack 1
- Windows Vista x64 Edition and Windows Vista x64 Edition Service Pack 1
- Windows Server 2008 for 32-bit Systems
- Windows Server 2008 for x64-based Systems
- Windows Server 2008 for Itanium-based Systems
- Internet Explorer
- Microsoft Windows 2000 Service Pack 4
- Microsoft Internet Explorer 6 Service Pack 1 (KB958869)
- Microsoft .NET Framework
- Microsoft Windows 2000 Service Pack 4
- Microsoft .NET Framework 1.1 Service Pack 1 (KB971108)
- Microsoft .NET Framework 2.0 Service Pack 1 (KB971110)
- Microsoft .NET Framework 2.0 Service Pack 2 (KB971111)
- Microsoft Office Suites
- Microsoft Office XP Service Pack 3
- Microsoft Office 2003 Service Pack 3
- 2007 Microsoft Office System Service Pack 1
- 2007 Microsoft Office System Service Pack 2
- Other Office Software
- Microsoft Office Project 2002 Service Pack 1
- Microsoft Office Visio 2002 Service Pack 2
- Microsoft Office Word Viewer, Microsoft Word Viewer 2003, Microsoft Word Viewer 2003 Service Pack 3, Microsoft Office Excel Viewer 2003, Microsoft Office Excel Viewer 2003 Service Pack 3
- Microsoft Office Excel Viewer, PowerPoint Viewer 2007, PowerPoint Viewer 2007 Service Pack 1
- PowerPoint Viewer 2007 Service Pack 2
- Microsoft Office Compatibility Pack for Word, Excel, and PowerPoint 2007 File Formats Service Pack 1
- Microsoft Office Compatibility Pack for Word, Excel, and PowerPoint 2007 File Formats Service Pack 2
- Microsoft Expression Web and Microsoft Expression Web 2
- Microsoft Office Groove 2007 and Microsoft Office Groove 2007 Service Pack 1
- Microsoft Works 8.5
- Microsoft SQL Server
- Developer Tools
- Microsoft Visual Studio .NET 2003 Service Pack 1
- Microsoft Visual Studio 2005 Service Pack 1
- Microsoft Visual Studio 2008
- Microsoft Visual Studio 2008 Service Pack 1
- Microsoft Report Viewer 2005 Service Pack 1 Redistributable Package
- Microsoft Report Viewer 2008 Redistributable Package
- Microsoft Report Viewer 2008 Redistributable Package Service Pack 1
- Microsoft Visual FoxPro 8.0 Service Pack 1 when installed on Microsoft Windows 2000 Service Pack 4
- Microsoft Visual FoxPro 9.0 Service Pack 2 when installed on Microsoft Windows 2000 Service Pack 4
- Microsoft Platform SDK Redistributable: GDI+
- Security Software
- Microsoft Forefront Client Security 1.0 when installed on Microsoft Windows 2000 Service Pack 4
Vulnerability Identifier
- CVE-2009-2500
- CVE-2009-2501
- CVE-2009-2502
- CVE-2009-2503
- CVE-2009-2504
- CVE-2009-3126
- CVE-2009-2528
- CVE-2009-2518
Source
Related Link
Share with