Microsoft Windows Shell Remote Code Execution Multiple Vulnerabilities
Last Update Date:
14 Nov 2012 17:21
Release Date:
14 Nov 2012
4604
Views
RISK: High Risk
TYPE: Operating Systems - Windows OS
- Windows Briefcase Integer Underflow Vulnerability
A remote code execution vulnerability exists in the Briefcase feature in Windows. An attacker could exploit the vulnerability by convincing a user to open a specially crafted briefcase. An attacker who successfully exploited this vulnerability could execute arbitrary code in the security context of the current user. - Windows Briefcase Integer Overflow Vulnerability
A remote code execution vulnerability exists in the Briefcase feature in Windows. An attacker could exploit the vulnerability by convincing a user to open a specially crafted Windows Briefcase. An attacker who successfully exploited this vulnerability could execute arbitrary code in the security context of the current user.
Impact
- Remote Code Execution
System / Technologies affected
- Microsoft Windows XP
- Microsoft Windows Vista
- Microsoft Windows 7
- Microsoft Windows 8
- Microsoft Windows Server 2003
- Microsoft Windows Server 2008
- Microsoft Windows Server 2012
Solutions
Before installation of the software, please visit the software manufacturer web-site for more details.
- Download location for patches:
http://technet.microsoft.com/en-us/security/bulletin/MS12-072
Vulnerability Identifier
Source
Related Link
Share with