Oval Definition:oval:org.mitre.oval:def:12150
Revision Date:2015-08-10Version:12
Title:FlashPix Image Converter Heap Corruption Vulnerability
Description:The FlashPix image converter in the graphics filters in Microsoft Office XP SP3 and Office Converter Pack allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via a crafted FlashPix image in an Office document, aka "FlashPix Image Converter Heap Corruption Vulnerability."
Family:windowsClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2010-3952
Platform(s):Microsoft Windows 7
Microsoft Windows Server 2003
Microsoft Windows Server 2008
Microsoft Windows Vista
Microsoft Windows XP
Product(s):Microsoft Office 2002
Microsoft Office Converter Pack
Microsoft Works 9
Definition Synopsis
  • Vulnerable Office 2002, Office File Converter Pack
  • Office XP or Office File Converter Pack
  • Microsoft Office XP is installed
  • OR Microsoft Office Converter Pack is installed
  • AND the version of Gifimp32.flt is less than 2003.1100.8327.0
  • OR Vulnerable Works 9
  • Microsoft Works 9.0 is installed
  • AND the version of Wkimg90.dll is less than 9.10.527.0
  • BACK