[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

250038

 
 

909

 
 

195843

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

Microsoft PICT Filter Parsing Vulnerability

ID: oval:org.mitre.oval:def:5997Date: (C)2008-08-13   (M)2024-02-29
Class: VULNERABILITYFamily: windows




Microsoft Office 2000 SP3, XP SP3, and 2003 SP2; Office Converter Pack; and Works 8 do not properly parse the length of a PICT file, which allows remote attackers to execute arbitrary code via a crafted PICT file with an invalid bits_per_pixel field, aka the "PICT Filter Parsing Vulnerability," a different vulnerability than CVE-2008-3018.

Platform:
Microsoft Windows 2000
Microsoft Windows 7
Microsoft Windows 8
Microsoft Windows 8.1
Microsoft Windows Server 2003
Microsoft Windows Server 2008
Microsoft Windows Server 2012
Microsoft Windows Server 2012 R2
Microsoft Windows Vista
Microsoft Windows XP
Microsoft Windows Server 2008 R2
Product:
Microsoft Office 2000
Microsoft Office XP
Microsoft Office 2003
Microsoft Project 2002
Microsoft Office Converter Pack
Microsoft Works 8
Reference:
CVE-2008-3021
CVE    1
CVE-2008-3021
CPE    7
cpe:/a:microsoft:office:2000:sp3
cpe:/a:microsoft:office:xp:sp3
cpe:/a:microsoft:office:2003
cpe:/a:microsoft:office:2000
...

© SecPod Technologies