| Definition Id: oval:org.mitre.oval:def:1105 |
Date: 2005-12-20 |
| Title: |
GDI+ JPEG Parsing Engine Buffer Overflow (Server 2003) |
| Description: |
Buffer overflow in the JPEG (JPG) parsing engine in the Microsoft Graphic Device Interface Plus (GDI+) component, GDIPlus.dll, allows remote attackers to execute arbitrary code via a JPEG image with a small JPEG COM field length that is normalized to a large integer length before a memory copy operation. |
| Version: |
2 |
Class: |
vulnerability |
| Status: |
ACCEPTED |
Reference(s): |
CVE-2004-0200
|
| Family: |
windows |
| Platform(s): |
Microsoft Windows XP Microsoft Windows Server 2003 |
Product(s): |
GDI+ |
| Definition Synopsis: |
|
|