SecurityTracker.com
Keep Track of the Latest Vulnerabilities
with SecurityTracker!
    Home    |    View Topics    |    Search    |    Contact Us    |    Help    |   

SecurityTracker
Archives


Welcome to SecurityTracker!
 
Click to Sign Up
Sign Up
Sign Up for Your FREE Weekly SecurityTracker E-mail Alert Summary
Instant Alerts
Buy our Premium Vulnerability Notification Service to receive customized, instant alerts
Affiliates
Put SecurityTracker Vulnerability Alerts on Your Web Site -- It's Free!
Partners
Become a Partner and License Our Database or Notification Service
Report a Bug
Report a vulnerability that you have found to SecurityTracker
bugs
@
securitytracker.com

Sign Up!





Category:  OS (Microsoft)  >  Microsoft Program Group Converter Vendors:  Microsoft
Microsoft Program Group Converter Buffer Overflow Lets Remote Users Execute Arbitrary Code
SecurityTracker Alert ID:  1011646
SecurityTracker URL:  http://securitytracker.com/id?1011646
CVE Reference:  CAN-2004-0572   (Links to External Site)
Date:  Oct 12 2004
Impact:  Execution of arbitrary code via network, User access via network
Fix Available:  Yes   Vendor Confirmed:  Yes  
Version(s): NT 4 SP6 and SP6a, 2000 SP 3and SP 4, 2003, and XP SP1
Description:  A vulnerability was reported in the Microsoft Program Group Converter, part of several Microsoft operating systems. A remote user may be able to cause a target user to execute arbitrary code.

Microsoft reported that the Program Group Converter (grpconv.exe) contains a buffer overflow. A remote user can create specially crafted HTML or a specially crafted '.grp' file that, when loaded by the target user, will execute arbitrary code on the target user's system. The code will run with the privileges of the target user.

Impact:  A remote user can execute arbitrary code on the target user's system with the privileges of the target user.
Solution:  The vendor has issued a fix.

Microsoft Windows NT Server 4.0 Service Pack 6a:

http://www.microsoft.com/downloads/details.aspx?FamilyId=F8046E83-E151-4AAF-80CB-AD4F31 C02EAC


Microsoft Windows NT Server 4.0 Terminal Server Edition Service Pack 6:

http://www.microsoft.com/downloads/details.aspx?FamilyId=2DCC6C99-509D-41A5-A3C7-CA C017D633E1



Microsoft Windows 2000 Service Pack 3 and Microsoft Windows 2000 Service Pack 4:

http://www.microsoft.com/downloads/details.aspx?FamilyId=846E7479-13 3B-45D7-AA69-D9257F1BE178

Microsoft Windows XP and Microsoft Windows XP Service Pack 1:

http://www.microsoft.com/downloads/details.aspx?FamilyId=FB93CB07-3A7E-444C- B083-324FC9049B94

Microsoft Windows XP 64-Bit Edition Service Pack 1:

http://www.microsoft.com/downloads/details.aspx?FamilyId=FF84BCBE-D1E5-4402-8CE4-F8D9966C79D0



Microsoft Windows XP 64-Bit Edition Version 2003:

http://www.microsoft.com/downloads/details.aspx?FamilyId=AB91C7FF-2547-455E-9A6D-82B09373495F


Microsoft Windows Server 2003:

http://www.microsoft.com/downloads/details.aspx?FamilyId=5C60CA12-0045-42B7-9F2A-6D433DEDC105&

Microsoft Windows Server 2003 64-Bit Edition:

http://www.microsoft.com/downloads/details.aspx?FamilyId=AB91C7FF-2547-455E-9A6D-82B09373495F

Windows XP SP2 is not affected.

A system restart is required.

Vendor URL:  www.microsoft.com/technet/security/bulletin/ms04-037.mspx (Links to External Site)
Cause:  Boundary error
Underlying OS:  Windows (NT), Windows (2000), Windows (2003), Windows (XP)

Message History:   None.


 Source Message Contents

Date:  Tue, 12 Oct 2004 17:57:39 -0400
Subject:  http://www.microsoft.com/technet/security/bulletin/ms04-037.mspx

 
 
MS04-037
 
http://www.microsoft.com/technet/security/bulletin/ms04-037.mspx
 


Go to the Top of This SecurityTracker Archive Page





Home   |    View Topics   |    Search   |    Contact Us   |    Help

Copyright 2004, SecurityGlobal.net LLC