Juniper Networks
Solutions
Products & Services
Company
Partners
Support
Education

Signature Detail

Security Intelligence Center
Signatures
Print

Short Name

SMTP:MAL:WMF-MAL-HEADER

Severity

Medium

Recommended

No

Category

SMTP

Keywords

WMF Malformed Header

Release Date

2006/02/14

Update Number

1213

Supported Platforms

idp-4.0+, isg-3.0+, j-series-9.5+, mx-9.4+, srx-9.2+, srx-branch-9.4+, vsrx-12.1+

SMTP: WMF Malformed Header


This signature detects a Windows Meta File with invalid options in its header. Some versions of Internet Explorer are vulnerable. A successful attack can allow an attacker to run code as the user.

Extended Description

Microsoft Internet Explorer is affected by an WMF image-parsing memory-corruption vulnerability. This issue is allegedly due to an integer-overflow flaw that leads to corrupted heap memory. This problem presents itself when a user views a malicious WMF-formatted file containing specially crafted data. This issue allows remote attackers to execute arbitrary machine code in the context of the affected application. Failed exploitation attempts likely result in crashing the application.

Affected Products

  • Avaya DefinityOne Media Servers R10
  • Avaya DefinityOne Media Servers R11
  • Avaya DefinityOne Media Servers R12
  • Avaya DefinityOne Media Servers R6
  • Avaya DefinityOne Media Servers R7
  • Avaya DefinityOne Media Servers R8
  • Avaya DefinityOne Media Servers R9
  • Avaya DefinityOne Media Servers
  • Avaya IP600 Media Servers R10
  • Avaya IP600 Media Servers R11
  • Avaya IP600 Media Servers R12
  • Avaya IP600 Media Servers R6
  • Avaya IP600 Media Servers R7
  • Avaya IP600 Media Servers R8
  • Avaya IP600 Media Servers R9
  • Avaya IP600 Media Servers
  • Avaya Modular Messaging (MAS)
  • Avaya S8100 Media Servers R10
  • Avaya S8100 Media Servers R11
  • Avaya S8100 Media Servers R12
  • Avaya S8100 Media Servers R6
  • Avaya S8100 Media Servers R7
  • Avaya S8100 Media Servers R8
  • Avaya S8100 Media Servers R9
  • Avaya S8100 Media Servers
  • Avaya Unified Communications Center S3400
  • Microsoft Internet Explorer 5.0.1 SP4
  • Nortel Networks Contact Center
  • Nortel Networks IP Address Domain Manager
  • Nortel Networks IP softphone 2050
  • Nortel Networks MCS 5100 3.0.0
  • Nortel Networks MCS 5200 3.0.0
  • Nortel Networks Optivity Telephony Manager TM-CS1000
  • Nortel Networks Self-Service Media Processing Server
  • Nortel Networks Self-Service Peri IVR
  • Nortel Networks Self-Service Peri NT Server

References

  • BugTraq: 16516
  • CVE: CVE-2006-0020
  • URL: http://www.microsoft.com/technet/security/bulletin/ms06-004.mspx

Site Map
RSS Feeds
Careers
Accessibility
Feedback
Privacy Policy
Legal Notices
Copyright © 1999-2010 Juniper Networks, Inc. All rights reserved.
Help
|
My Account
|
Log Out