| Definition Id: oval:org.mitre.oval:def:3881 |
Date: 2005-12-26 |
| Title: |
GDI+ JPEG Parsing Engine Buffer Overflow (Office XP,SP2) |
| Description: |
Buffer overflow in the JPEG (JPG) parsing engine in the Microsoft Graphic Device Interface Plus (GDI+) component, GDIPlus.dll, allows remote attackers to execute arbitrary code via a JPEG image with a small JPEG COM field length that is normalized to a large integer length before a memory copy operation. |
| Version: |
3 |
Class: |
vulnerability |
| Status: |
ACCEPTED |
Reference(s): |
CVE-2004-0200
|
| Family: |
windows |
| Platform(s): |
Microsoft Windows NT Microsoft Windows 2000 Microsoft Windows XP |
Product(s): |
Microsoft Office XP SP2 |
| Definition Synopsis: |
|
|