Oval Definition:oval:org.mitre.oval:def:11827
Revision Date:2015-08-10Version:12
Title:TIFF Image Converter Heap Overflow Vulnerability
Description:Heap-based buffer overflow in the TIFF image converter in the graphics filters in Microsoft Office XP SP3, Office Converter Pack, and Works 9 allows remote attackers to execute arbitrary code via a crafted TIFF image in an Office document, aka "TIFF Image Converter Heap Overflow Vulnerability."
Family:windowsClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2010-3947
Platform(s):Microsoft Windows 7
Microsoft Windows Server 2003
Microsoft Windows Server 2008
Microsoft Windows Vista
Microsoft Windows XP
Product(s):Microsoft Office 2002
Microsoft Office Converter Pack
Microsoft Works 9
Definition Synopsis
  • Vulnerable Office 2002, Office File Converter Pack
  • Office XP or Office File Converter Pack
  • Microsoft Office XP is installed
  • OR Microsoft Office Converter Pack is installed
  • AND the version of Gifimp32.flt is less than 2003.1100.8327.0
  • OR Vulnerable Works 9
  • Microsoft Works 9.0 is installed
  • AND the version of Wkimg90.dll is less than 9.10.527.0
  • BACK