SecurityTracker.com
    Home    |    View Topics    |    Search    |    Contact Us    |   

SecurityTracker
Archives


 


Category:   OS (Microsoft)  >   Windows Help System Vendors:   Microsoft
Microsoft HTML Help Input Validation Flaw Lets Remote Users Execute Arbitrary Code
SecurityTracker Alert ID:  1014195
SecurityTracker URL:  http://securitytracker.com/id/1014195
CVE Reference:   CVE-2005-1208   (Links to External Site)
Date:  Jun 14 2005
Impact:   Execution of arbitrary code via network, User access via network
Fix Available:  Yes  Vendor Confirmed:  Yes  
Version(s): 2000 SP4, XP SP2, 2003 SP1, 98; and prior service packs
Description:   A vulnerability was reported in Microsoft HTML Help. A remote user can execute arbitrary code on the target system.

HTML Help does not properly validate user-supplied input. A remote user can create specially crafted HTML that, when loaded by the target user, will invoke HTML Help and execute arbitrary code. The code will run with the privileges of the target user.

The vendor credits eEye Digital Security and Peter Winter-Smith of Next Generation Security Software Ltd. with reporting this vulnerability.

Impact:   A remote user can cause arbitrary code to be executed on the target user's system with the privileges of the target user.
Solution:   The vendor has issued the following fixes:

Microsoft Windows 2000 Service Pack 3 and Microsoft Windows 2000 Service Pack 4:

http://www.microsoft.com/downloads/details.aspx?FamilyId=9AF346AE-4807-42F4-95E2-8F5FAE321102

Microsoft Windows XP Service Pack 1 and Microsoft Windows XP Service Pack 2:

http://www.microsoft.com/downloads/details.aspx?FamilyId=17833B94-AF70-47BD-872C-033A3F0E982A

Microsoft Windows XP 64-Bit Edition Service Pack 1 (Itanium):

http://www.microsoft.com/downloads/details.aspx?FamilyId=A6A807F2-AD02-4D15-A198-CF8A728B3A25

Microsoft Windows XP 64-Bit Edition Version 2003 (Itanium):

http://www.microsoft.com/downloads/details.aspx?FamilyId=EE8BA26D-CFDA-428F-9F9B-16908DB88C80

Microsoft Windows XP Professional x64 Edition:

http://www.microsoft.com/downloads/details.aspx?FamilyId=CE81AE3B-4FA4-4576-8539-AB49E575A98F

Microsoft Windows Server 2003 and Microsoft Windows Server 2003 Service Pack 1:

http://www.microsoft.com/downloads/details.aspx?FamilyId=A19EEE21-7DF2-4B95-A4C5-44C6CAA5AF9A

Microsoft Windows Server 2003 for Itanium-based Systems and Microsoft Windows Server 2003 with SP1 for Itanium-based Systems:

http://www.microsoft.com/downloads/details.aspx?FamilyId=EE8BA26D-CFDA-428F-9F9B-16908DB88C80

Microsoft Windows Server 2003 x64 Edition:

http://www.microsoft.com/downloads/details.aspx?FamilyId=2E8716F7-3A81-4482-8C92-2A2DC3C2F782

Slovenian:

http://download.microsoft.com/download/0/3/E/03E845F6-7F6E-49A6-8DDA-C0338E80E517/WindowsME-KB896358-SLV.EXE

Slovakian:

http://download.microsoft.com/download/0/3/E/03E845F6-7F6E-49A6-8DDA-C0338E80E517/WindowsME-KB896358-SKY.EXE

Thai:

http://download.microsoft.com/download/0/3/E/03E845F6-7F6E-49A6-8DDA-C0338E80E517/WindowsME-KB896358-THA.EXE

A restart is not required.

Vendor URL:  www.microsoft.com/technet/security/Bulletin/MS05-026.mspx (Links to External Site)
Cause:   Input validation error

Message History:   None.


 Source Message Contents



[Original Message Not Available for Viewing]


Go to the Top of This SecurityTracker Archive Page





Home   |    View Topics   |    Search   |    Contact Us

This web site uses cookies for web analytics. Learn More

Copyright 2021, SecurityGlobal.net LLC