44215 : Microsoft Windows GDI EMF Filename Parameter Handling Overflow
Printer | http://osvdb.org/44215 | Email This | Edit Vulnerability

Views This Week

88

Views All Time

442

Info

Last Modified

about 1 month ago

Percent Complete

100%

Disclosure

Apr 08, 2008

Discovery

Unknown

Dates

Exploit

Unknown

Solution

Apr 08, 2008

Description

A buffer overflow exists in Windows. GDI fails to validate EMF files resulting in a stack overflow. With a specially crafted file, a context-dependent attacker can cause arbitrary code execution resulting in a loss of integrity.

Classification

Location: Local Access Required, Remote/Network Access Required
Attack Type: Input Manipulation
Impact: Loss of Integrity
Solution: Patch
Exploit: Exploit Unknown
Disclosure: Vendor Verified
OSVDB: Context Dependent

Solution

Currently, there are no known workarounds or upgrades to correct this issue. However, Microsoft has released a patch to address this vulnerabilitty.

Products

Microsoft Corporation
Watch-list
Windows
Watch-list
XP SP2
2003 Server SP1
XP Pro x64 Edition SP2
2003 Server SP2
2003 Server x64
2003 Server SP2 x64
2000 SP4
Vista
2003 Server SP2 for Itanium
Vista x64 Edition
2003 Server for Itanium
Vista SP1
Vista SP1 x64 Edition
2008 Server
XP Pro x64 Edition

References

Credit

  • Yamata Li - Palo Alto Networks

Blogs

2008/04/16 15:59:15 | Hacker releases working GDI-bug attack code

from: PC Sympathy - PC News and Technical Support

Security researchers on Monday spotted malicious code that triggers a critical vulnerability in the Chinese version of Windows 2000, ... , the company also urged users to deploy the fixes outlined by Microsoft in its MS08-021 security bulletin

2008/04/16 12:08:52 | New malicious code crashes Chinese Windows 2000

from: Firewall news antivirus news and security updates online

New malicious code crashes Chinese Windows 2000 Filed Under (Windows, security) ... released by Microsoft in MS08-021 security bulletin to patch their systems. AddThis Social

2008/04/16 08:00:48 | Attackers exploit recent Microsoft fix

from: Flying Hamster

www.scmagazineus.com, “Hackers continue trying to exploit a patched vulnerability in Microsoft’s Graphic Display Interface (GDI), researchers said this week. Craig Schmugar, threat researcher at McAfee, reported that the first exploit was discovered on Friday, three days after the issue was patched by bulletin MS08-021.”

2008/04/14 22:14:02 | Urgency Raised For Recent Microsoft Vulnerability

from: PC Magazine Security Watch - Tech Security News, Reviews, Patches and Advice

MS08-021 is not one of the patches you can take your time with.

2008/04/14 10:24:23 | EXPL_NEVAR: Another Post-Disclosure Exploit

from: TrendLabs | Malware Blog - by Trend Micro

Here is yet another case of Patch Tuesday/Exploit Wednesday ... in the Microsoft Security Bulletin MS08-021 (classified as critical). This vulnerability refers

2008/04/14 04:20:28 | Microsoft patched critical Windows bug in XP SP3 early

from: PinoySource.org Forum - Computer and Technology Community Philippines

Endless-reboot problem stemmed from GDI flaw The appearance and disappearance of a Windows XP installation snafu indicates that Microsoft patched a critical vulnerability in XP's still-unfinished Service Pack 3 (SP3) weeks before it fixed any other version of Windows

2008/04/14 01:17:21 | Hackers attack latest Windows patch

from: gadget life blog - Just another WordPress weblog

Hackers attack latest Windows patch Posted by: in PC Guide Hackers are trying to exploit a critical Windows vulnerability recently patched on Tuesday, security researchers say and the only version of Windows not at risk is the unfinished Windows XP SP3

2008/04/09 18:38:28 | Microsoft Patches Critical Bugs in Windows

from: tech2news around U

Microsoft has posted eight security updates — more than half marked “critical” — that patch 10 bugs in Windows, Office and Internet Explorer ... plugged by MS08-021, a critical update for every currently supported version of Windows, including ... . “You don’t need to have any special software on your PC to be vulnerable.” The MS08-021 update

2008/04/09 17:47:17 | Microsoft patches critical Windows bugs

from: Valhalla Torrent Blog Community

Microsoft patches critical Windows bugs April 9th, 2008 Microsoft issued a critical patch for two vulnerabilities in the core graphics subsystem ... in the industry as “Patch Tuesday.” MS08-021 fixes two vulnerabilities in Windows’ graphics device

2008/04/11 15:57:53 | “Attempts” at Exploiting MS08-021

from: McGrew Security Blog

I was just going to del.icio.us this, write a snippet on it, and let it post on the daily links update, but I don’t think I could quite squeeze what I have to say about this into the size limitation there.  Read this, then come back here: Attempt at Exploiting Latest GDI Vulnerability Found in the Wild - brought to my attention by Jason via

2008/04/11 14:03:07 | Attacks begin against critical Patch Tuesday bug

from: Windows Guides | Mintywhite.com

Hackers are trying to exploit a critical Windows vulnerability just patched on Tuesday, security researchers said this afternoon — and the only version of Windows not at risk is the unfinished Windows XP Service Pack 3 (SP3). Fortunately, attackers’ incompetence means that these initial sorties have been unsuccessful, Symantec Corp

Comments

No Comments.

DONATE NOW!

User Status

Quick Searches

Advertisements

The database information may change without any notice. Use of the information constitutes acceptance for use in an AS IS condition, and there are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. In no event shall the copyright holder or distributor (OSVDB or OSF) be held liable for any damages whatsoever arising out of or in connection with the use or spread of this information.

© Copyright 2008 Open Source Vulnerability Database (OSVDB), All Rights Reserved.
Privacy Statement - Terms of Use