Short Name |
HTTP:STC:IMG:MS-BMP-OF
|
Severity |
High
|
Recommended |
No
|
Recommended Action |
Drop
|
Category |
HTTP
|
Keywords |
Microsoft Windows Graphics Rendering Engine BMP File Parsing Integer Overflow
|
Release Date |
2011/07/15
|
Update Number |
1956
|
Supported Platforms |
idp-4.0+, isg-3.1.134269+, j-series-9.5+, mx-9.4+, srx-9.2+, srx-branch-9.4+, vsrx-12.1+
|
HTTP: Microsoft Windows Graphics Rendering Engine BMP File Parsing Integer Overflow
This signature detects attempts to exploit a known vulnerability in the Microsoft Windows Graphics Rendering Engine component. An attacker can exploit this vulnerability by enticing a user to open a malicious BMP file. A successful attack can lead to a interger overflow and arbitrary remote code execution with the privileges of the currently logged in user.
Extended Description
Microsoft GDI+ is prone to an integer-overflow vulnerability.
An attacker can exploit this issue by enticing unsuspecting users to view a malicious BMP file.
Successfully exploiting this issue allows remote attackers to corrupt memory and execute arbitrary code in the context of the affected application. Failed exploit attempts will result in a denial-of-service condition.
Affected Products
- Hitachi JP1/VERITAS Backup Exec 11d (Windows) 08-00
- Hitachi JP1/VERITAS Backup Exec 11d (Windows) 08-01
- Hitachi JP1/VERITAS Backup Exec 11d (Windows) 08-02
- Hitachi JP1/VERITAS Backup Exec 11d (Windows) 08-03
- Hitachi JP1/VERITAS Backup Exec 11d (Windows) 08-04
- Hitachi JP1/VERITAS Backup Exec 11d (Windows) 08-05
- Hitachi JP1/VERITAS Backup Exec 12 (Windows) 08-50
- Hitachi JP1/VERITAS Backup Exec 12 (Windows) 08-51
- Hitachi JP1/VERITAS Backup Exec 12 (Windows) 08-52
- HP Storage Management Appliance 2.1
- HP Storage Management Appliance I
- HP Storage Management Appliance II
- HP Storage Management Appliance III
- Microsoft Digital Image Suite 2006
- Microsoft Excel Viewer
- Microsoft Excel Viewer 2007
- Microsoft Expression Web 2
- Microsoft Expression Web
- Microsoft Forefront Client Security 1.0
- Microsoft Groove 2007 SP1
- Microsoft Groove 2007
- Microsoft Office 2003 SP1
- Microsoft Office 2003 SP2
- Microsoft Office 2003 SP3
- Microsoft Office 2003
- Microsoft Office 2007 SP1
- Microsoft Office 2007
- Microsoft Office Compatibility Pack 2007 SP1
- Microsoft Office Compatibility Pack 2007
- Microsoft Office Excel Viewer 2003 SP3
- Microsoft Office Excel Viewer 2003
- Microsoft PowerPoint Viewer 2003
- Microsoft PowerPoint Viewer 2007 SP1
- Microsoft PowerPoint Viewer 2007
- Microsoft Project 2002 SP1
- Microsoft Project 2002
- Microsoft Report Viewer 2005 SP1
- Microsoft Report Viewer 2008
- Microsoft SQL Server 2000
- Microsoft SQL Server 2005
- Microsoft SQL Server 2005 Itanium Edition SP1
- Microsoft SQL Server 2005 Itanium Edition SP2
- Microsoft SQL Server 2005 Itanium Edition
- Microsoft SQL Server 2005 x64 Edition SP1
- Microsoft SQL Server 2005 x64 Edition SP2
- Microsoft Visio 2002 SP2
- Microsoft Word Viewer 2003 SP3
- Microsoft Word Viewer 2003
- Microsoft Works 8.0
- Nortel Networks CallPilot 1002Rp
- Nortel Networks CallPilot 200I
- Nortel Networks CallPilot 201I
- Nortel Networks CallPilot 702T
- Nortel Networks CallPilot 703T
- Nortel Networks Contact Center Administration
- Nortel Networks Contact Center Express
- Nortel Networks Contact Center Manager
- Nortel Networks Contact Center Manager Server
- Nortel Networks Contact Center NCC
- Nortel Networks Contact Center - TAPI Server
- Nortel Networks ENSM - Enterprise NMS 10.4
- Nortel Networks ENSM - Enterprise NMS 10.5
- Nortel Networks Enterprise Network Management System
- Nortel Networks Media Processing Svr 100
- Nortel Networks Media Processing Svr 1000 Rel 3.0
- Nortel Networks Media Processing Svr 500 Rel 3.0
- Nortel Networks Self-Service - CCSS7
- Nortel Networks Self-Service MPS 100
- Nortel Networks Self-Service MPS 1000
- Nortel Networks Self-Service MPS 500
- Nortel Networks Self-Service Peri Application
- Nortel Networks Self-Service Peri Workstation
- Nortel Networks Self-Service Speech Server
- Nortel Networks Self Service VoiceXML
- Nortel Networks Self-Service WVADS
- Research In Motion Blackberry Enterprise Server 4.0.3
- Research In Motion Blackberry Enterprise Server 4.1.3
- Research In Motion Blackberry Enterprise Server 4.1.4
- Research In Motion Blackberry Enterprise Server 4.1.5
- Research In Motion Blackberry Enterprise Server 4.1.6
- Research In Motion Blackberry Professional Software 4.1.4
- Research In Motion Blackberry Unite! 1.0
- Research In Motion Blackberry Unite! 1.0.1
- Research In Motion Blackberry Unite! 1.0.1 Bundle 36
- Symantec Backup Exec for Windows Servers 11D
- Symantec Backup Exec for Windows Servers 12.0
References