Microsoft Program Group Converter Buffer Overflow Lets Remote Users Execute Arbitrary Code
|
|
SecurityTracker Alert ID: 1011646
|
|
SecurityTracker URL: http://securitytracker.com/id?1011646
|
|
CVE Reference: CAN-2004-0572
(Links to External Site)
|
Date: Oct 12 2004
|
Impact: Execution of arbitrary code via network, User access via network
|
Fix Available: Yes
Vendor Confirmed: Yes
|
Version(s): NT 4 SP6 and SP6a, 2000 SP 3and SP 4, 2003, and XP SP1
|
Description: A vulnerability was reported in the Microsoft Program Group Converter, part of several Microsoft operating systems. A remote user may be able to cause a target user to execute arbitrary code.
Microsoft reported that the Program Group Converter (grpconv.exe) contains a buffer overflow. A remote user can create specially
crafted HTML or a specially crafted '.grp' file that, when loaded by the target user, will execute arbitrary code on the target
user's system. The code will run with the privileges of the target user.
|
Impact: A remote user can execute arbitrary code on the target user's system with the privileges of the target user.
|
Solution: The vendor has issued a fix.
Microsoft Windows NT Server 4.0 Service Pack 6a:
http://www.microsoft.com/downloads/details.aspx?FamilyId=F8046E83-E151-4AAF-80CB-AD4F31
C02EAC
Microsoft Windows NT Server 4.0 Terminal Server Edition Service Pack 6:
http://www.microsoft.com/downloads/details.aspx?FamilyId=2DCC6C99-509D-41A5-A3C7-CA
C017D633E1
Microsoft Windows 2000 Service Pack 3 and Microsoft Windows 2000 Service Pack 4:
http://www.microsoft.com/downloads/details.aspx?FamilyId=846E7479-13
3B-45D7-AA69-D9257F1BE178
Microsoft Windows XP and Microsoft Windows XP Service Pack 1:
http://www.microsoft.com/downloads/details.aspx?FamilyId=FB93CB07-3A7E-444C-
B083-324FC9049B94
Microsoft Windows XP 64-Bit Edition Service Pack 1:
http://www.microsoft.com/downloads/details.aspx?FamilyId=FF84BCBE-D1E5-4402-8CE4-F8D9966C79D0
Microsoft Windows XP 64-Bit Edition Version 2003:
http://www.microsoft.com/downloads/details.aspx?FamilyId=AB91C7FF-2547-455E-9A6D-82B09373495F
Microsoft
Windows Server 2003:
http://www.microsoft.com/downloads/details.aspx?FamilyId=5C60CA12-0045-42B7-9F2A-6D433DEDC105&
Microsoft
Windows Server 2003 64-Bit Edition:
http://www.microsoft.com/downloads/details.aspx?FamilyId=AB91C7FF-2547-455E-9A6D-82B09373495F
Windows
XP SP2 is not affected.
A system restart is required.
|
Vendor URL: www.microsoft.com/technet/security/bulletin/ms04-037.mspx (Links to External Site)
|
Cause: Boundary error
|
Underlying OS: Windows (NT), Windows (2000), Windows (2003), Windows (XP)
|
|
Message History:
None.
|
Source Message Contents
|
Date: Tue, 12 Oct 2004 17:57:39 -0400
Subject: http://www.microsoft.com/technet/security/bulletin/ms04-037.mspx
|
MS04-037
http://www.microsoft.com/technet/security/bulletin/ms04-037.mspx
|
|