CERT-In Vulnerability Note
CIVN-2010-0232
Microsoft Windows heap-based buffer-overflow Vulnerability
Original Issue Date:October 15, 2010
Severity Rating: MEDIUM
Systems Affected
- Microsoft Windows XP Tablet PC Edition SP3
- Microsoft Windows XP Professional x64 SP2 and SP3
- Microsoft Windows XP Professional SP3
- Microsoft Windows XP Media Center Edition SP3
- Microsoft Windows XP Home SP3
- Microsoft Windows XP Embedded SP3
- Microsoft Windows Vista x64 Edition SP1 and SP2
- Microsoft Windows Vista SP1 and SP2
- Microsoft Windows Server 2008 for x64-based Systems
- Microsoft Windows Server 2008 for Itanium-based Systems
- Microsoft Windows Server 2008 for 32-bit Systems
- Microsoft Windows Server 2003 x64 SP2
- Microsoft Windows Server 2003 Itanium SP2
- Microsoft Windows Server 2003 Datacenter Edition Itanium SP1 Beta 1
- Microsoft Windows 7 for x64-based Systems 0
- Microsoft Windows 7 for 32-bit Systems
Overview
A vulnerability has been reported in Microsoft Windows control library that could allow an remote attacker to execute arbitrary code with the privileges of the logged in user.
Description
This vulnerability occurs when the Windows common control library does not properly handle certain messages when rendering scalable vector graphics passed from a third-party scalable vector graphics (SVG) viewer.
A remote attacker could exploit this vulnerability by creating a specially crafted HTML file which will trigger a heap overflow in Comctl32.dll when using a third-party scalable vector graphics (SVG) viewer. Successful exploitation of this vulnerability could allow a remote attacker to execute arbitrary code and take complete control of the affected system in the context of logged-in user.
Solution
Apply patches as mentioned in Microsoft Security bulletin
MS10-081
Vendor Information
Microsoft
http://www.microsoft.com/technet/security/bulletin/MS10-081.mspx
References
Security Tracker
http://securitytracker.com/alerts/2010/Oct/1024549.html
SecurityFocus
http://www.securityfocus.com/bid/43717/
Microsoft
http://www.microsoft.com/technet/security/bulletin/MS10-081.mspx
CVE Name
CVE-2010-2746
Disclaimer
The information provided herein is on "as is" basis, without warranty of any kind.
Contact Information
Email: info@cert-in.org.in Phone: +91-11-24368572
Postal address
Indian Computer Emergency Response Team (CERT-In) Ministry of Electronics and Information Technology Government of India Electronics Niketan 6, CGO Complex, Lodhi Road, New Delhi - 110 003 India
|