[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248149

 
 

909

 
 

194803

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

MFC Memory Corruption Vulnerability

ID: oval:org.mitre.oval:def:157Date: (C)2007-02-14   (M)2023-11-23
Class: VULNERABILITYFamily: windows




The MFC component in Microsoft Windows 2000 SP4, XP SP2, and 2003 SP1 and Visual Studio .NET 2000, 2002 SP1, 2003, and 2003 SP1 allows user-assisted remote attackers to execute arbitrary code via an RTF file with a malformed OLE object that triggers memory corruption. NOTE: this might be due to a stack-based buffer overflow in the AfxOleSetEditMenu function in MFC42u.dll.

Platform:
Microsoft Windows 2000
Microsoft Windows XP
Microsoft Windows Server 2003
Product:
Microsoft Visual Studio .NET 2002
Microsoft Visual Studio .NET 2003
Reference:
CVE-2007-0025
CVE    1
CVE-2007-0025
CPE    16
cpe:/a:microsoft:visual_studio_.net:2003:sp1
cpe:/a:microsoft:visual_studio_.net:2002
cpe:/o:microsoft:windows_2000::sp4
cpe:/o:microsoft:windows_server_2003::sp2:x86
...

© SecPod Technologies