SecurityTracker.com
Keep Track of the Latest Vulnerabilities
with SecurityTracker!
    Home    |    View Topics    |    Search    |    Contact Us    |   

SecurityTracker
Archives


 
Sign Up
Sign Up for Your FREE Weekly SecurityTracker E-mail Alert Summary
Instant Alerts
Buy our Premium Vulnerability Notification Service to receive customized, instant alerts
Affiliates
Put SecurityTracker Vulnerability Alerts on Your Web Site -- It's Free!
Partners
Become a Partner and License Our Database or Notification Service





Category:   Application (Generic)  >   Microsoft Visual Studio Vendors:   Microsoft
(Microsoft Issues Fix for Visual Studio) Microsoft GDI+ Buffer Overflow in Processing JPEG Images Lets Remote Users Execute Arbitrary Code
SecurityTracker Alert ID:  1011259
SecurityTracker URL:  http://securitytracker.com/id/1011259
CVE Reference:   CVE-2004-0200   (Links to External Site)
Date:  Sep 14 2004
Impact:   Execution of arbitrary code via local system, Execution of arbitrary code via network, User access via local system, User access via network
Fix Available:  Yes  Vendor Confirmed:  Yes  
Version(s): Visual Studio .NET 2002, 2003
Description:   A buffer overflow vulnerability in the processing of JPEG image formats was reported in the GDI+ code in several Microsoft operating systems and applications. A remote user can execute arbitrary code on the target system. Any application that processes JPEG images may be affected.

Microsoft reported that a remote user can create a specially crafted JPEG image that, when processed by an affected component, will execute arbitrary code on the target system. The code will run with the privileges of the calling application.

Windows XP, Windows XP Service Pack 1, and Windows Server 2003 are vulnerable by default, but other operating systems may be affected if certain vulnerable components have been installed, such as Microsoft .NET Framework and various 3rd party applications.

Affected applications include Office XP (Outlook, Word, Excel, PowerPoint, FrontPage, Publisher), Office 2003 (Outlook, Word, Excel, PowerPoint, FrontPage, Publisher, InfoPath, OneNote), Microsoft Project, Microsoft Visio, Microsoft Visual Studio .NET (Visual Basic .NET Standard, Visual C# .NET Standard, Visual C++ .NET Standard, Visual J# .NET Standard), Microsoft .NET Framework, Microsoft Picture It!, Microsoft Greetings, Microsoft Digital Image Pro, Microsoft Digital Image Suite, Microsoft Producer for Microsoft Office PowerPoint, Microsoft Platform SDK Redistributable: GDI+, and Internet Explorer 6.

Microsoft credits Nick DeBaggis with reporting this flaw.

The original advisory is available at:

http://www.microsoft.com/technet/security/bulletin/ms04-028.mspx

Impact:   A remote user can execute arbitrary code on the target system with the privileges of the target user or process.
Solution:   The vendor has issued the following fixes.

Microsoft Windows XP and Microsoft Windows XP Service Pack 1:
http://www.microsoft.com/downloads/details.aspx?FamilyId=3666222F-CA61-4726-BB8A-764CD824DCF0&displaylang=en


Microsoft Windows XP 64-Bit Edition Service Pack 1:
http://www.microsoft.com/downloads/details.aspx?FamilyId=AB25BFDD-77A0-4615-AA80-EFBD63855900&displaylang=en


Microsoft Windows XP 64-Bit Edition Version 2003:
http://www.microsoft.com/downloads/details.aspx?FamilyId=49D6E1C6-AEB0-4CE7-8D25-58A7DB99C1DE&displaylang=en


Microsoft Windows Server 2003:
http://www.microsoft.com/downloads/details.aspx?FamilyId=00B24CDC-4E4E-4AE1-9B36-7CE23E397F0F&displaylang=en


Microsoft Windows Server 2003 64-Bit Edition:
http://www.microsoft.com/downloads/details.aspx?FamilyId=49D6E1C6-AEB0-4CE7-8D25-58A7DB99C1DE&displaylang=en


Microsoft Office XP Service Pack 3 (Outlook 2002, Word 2002, Excel 2002, PowerPoint 2002, FrontPage 2002, Publisher 2002):
http://www.microsoft.com/downloads/details.aspx?FamilyId=7D128614-6D34-49DF-8D63-6C17E9A2D312&displaylang=en


Microsoft Office 2003 (Outlook 2003, Word 2003, Excel 2003, PowerPoint 2003, FrontPage 2003, Publisher 2003, InfoPath 2003, OneNote 2003):
http://www.microsoft.com/downloads/details.aspx?FamilyId=106BCF99-1BA9-4035-94C5-2A7FA90E5971&displaylang=en


Microsoft Project 2002 Service Pack 1 (all versions):
http://www.microsoft.com/downloads/details.aspx?FamilyId=B3EBCCEA-B0E4-41C7-A6F4-413864D2CCF3&displaylang=en


Microsoft Project 2003 (all versions):
http://www.microsoft.com/downloads/details.aspx?FamilyId=9E37B6B0-A028-47EA-8FA1-3705877A2908&displaylang=en


Microsoft Visio 2002 Service Pack 2 (all versions):
http://www.microsoft.com/downloads/details.aspx?FamilyId=16C2DFFD-7B73-43C4-AB0D-2B5EFC80EB63&displaylang=en


Microsoft Visio 2003 (all versions):
http://www.microsoft.com/downloads/details.aspx?FamilyId=C07D40A5-6F87-4D50-9640-34FFD2F189E1&displaylang=en


Microsoft Visual Studio .NET 2002 (Visual Basic .NET Standard 2002, Visual C# .NET Standard 2002, Visual C++ .NET Standard 2002):
http://www.microsoft.com/downloads/details.aspx?FamilyId=44004D19-B22F-4AF2-A701-1FCB0467FBF9&displaylang=en


Microsoft Visual Studio .NET 2003 (Visual Basic .NET Standard 2003, Visual C# .NET Standard 2003, Visual C++ .NET Standard 2003, Visual J# .NET Standard 2003):
http://www.microsoft.com/downloads/details.aspx?FamilyId=A13B7A21-463C-4286-AD68-E692417E80E2&displaylang=en


The Microsoft .NET Framework version 1.0 SDK Service Pack 2:
http://www.microsoft.com/downloads/details.aspx?FamilyId=69703D1D-2CE3-42DA-ABF8-353D2121DAB0&displaylang=en


Microsoft Picture It! 2002 (all versions):
http://www.microsoft.com/downloads/details.aspx?FamilyId=235EBC80-564B-4B52-A344-502E25AAD7FE&displaylang=en


Microsoft Greetings 2002:
http://www.microsoft.com/downloads/details.aspx?FamilyId=235EBC80-564B-4B52-A344-502E25AAD7FE&displaylang=en


Microsoft Picture It! version 7.0 (all versions):
http://www.microsoft.com/downloads/details.aspx?FamilyId=235EBC80-564B-4B52-A344-502E25AAD7FE&displaylang=en


Microsoft Digital Image Pro version 7.0:
http://www.microsoft.com/downloads/details.aspx?FamilyId=235EBC80-564B-4B52-A344-502E25AAD7FE&displaylang=en


Microsoft Picture It! version 9 (All Versions, including Picture It! Library):
http://www.microsoft.com/downloads/details.aspx?FamilyId=235EBC80-564B-4B52-A344-502E25AAD7FE&displaylang=en


Microsoft Digital Image Pro:
http://www.microsoft.com/downloads/details.aspx?FamilyId=235EBC80-564B-4B52-A344-502E25AAD7FE&displaylang=en


Microsoft Digital Image Suite version 9:
http://www.microsoft.com/downloads/details.aspx?FamilyId=235EBC80-564B-4B52-A344-502E25AAD7FE&displaylang=en


Microsoft Producer for Microsoft Office PowerPoint (all versions):
http://www.microsoft.com/downloads/details.aspx?FamilyID=1b3c76d5-fc75-4f99-94bc-784919468e73&DisplayLang=en


Microsoft Platform SDK Redistributable: GDI+:
The update was not listed in the advisory at the time of this entry.


Internet Explorer 6 Service Pack 1:
http://www.microsoft.com/downloads/details.aspx?FamilyId=B0095851-674D-4357-868C-DD75D88405EC&displaylang=en


The Microsoft .NET Framework version 1.0 Service Pack 2:
http://www.microsoft.com/downloads/details.aspx?familyid=6978D761-4A92-4106-A9BC-83E78D4ABC5B&displaylang=en


The Microsoft .NET Framework version 1.1:
http://www.microsoft.com/downloads/details.aspx?familyid=A8F5654F-088E-40B2-BBDB-A83353618B38&displaylang=en

Windows Journal Viewer:
http://www.microsoft.com/downloads/details.aspx?FamilyId=DBF1EA4E-72BD-4359-9F93-7C232ED2DCD3


Microsoft reports that an administrative update is also available for Office XP (applicable to Service Pack 2 and Service Pack 3) and Office 2003. See the advisory for more information.

Microsoft also indicates that MSN 9 users should install the Picture It! version 9 update only if they have installed Picture It! Express version 9 or Picture It! Library when MSN 9 was installed.

Microsoft has issued a tool to help you identify if you are running an affected component, available at:

http://support.microsoft.com/default.aspx?scid=kb;EN-US;873374

On October 12, Microsoft released a new MS04-028 Enterprise Update Scanning Tool to help in applying the patches:

http://support.microsoft.com/default.aspx?id=886988

Microsoft reports that users of Visio Viewer and PowerPoint Viewer programs should update to the latest versions to obtain the fix.

Visio 2002 Viewer:

http://www.microsoft.com/downloads/details.aspx?familyid=8fad9237-c0a7-4b80-a5df-46ce54dad2df

Visio 2003 Viewer:

http://www.microsoft.com/downloads/details.aspx?FamilyID=3fb3bd5c-fed1-46cf-bd53-da23635ab2df

PowerPoint 2003 Viewer:

http://www.microsoft.com/downloads/details.aspx?FamilyID=428d5727-43ab-4f24-90b7-a94784af71a4

Known issues related to the installation of the patch are described at:

http://support.microsoft.com/default.aspx?scid=kb;en-us;833987

On October 12, 2004, Microsoft warned that there are certain cases when the original versions of the Office, Visio, and Project security updates may not have installed properly. For more information, see:

http://support.microsoft.com/default.aspx?scid=kb;en-us;833987

A fix is also included as part of Microsoft Office 2003 SP2, available at:

http://www.microsoft.com/downloads/details.aspx?FamilyId=57E27A97-2DB6-4654-9DB6-EC7D5B4DD867&displaylang=en

Vendor URL:  www.microsoft.com/technet/security/bulletin/ms04-028.mspx (Links to External Site)
Cause:   Boundary error
Underlying OS:  Windows (Any)

Message History:   This archive entry is a follow-up to the message listed below.
Sep 14 2004 Microsoft GDI+ Buffer Overflow in Processing JPEG Images Lets Remote Users Execute Arbitrary Code



 Source Message Contents



[Original Message Not Available for Viewing]


Go to the Top of This SecurityTracker Archive Page





Home   |    View Topics   |    Search   |    Contact Us

This web site uses cookies for web analytics. Learn More

Copyright 2018, SecurityGlobal.net LLC