Oval Definition:oval:org.mitre.oval:def:1224
Revision Date:2006-09-27Version:13
Title:Step-by-Step Interactive Training Buffer Overflow
Description:Buffer overflow in Microsoft Step-by-Step Interactive Training (orun32.exe) allows remote attackers to execute arbitrary code via a bookmark link file (.cbo, cbl, or .cbm extension) with a long User field.
Family:windowsClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2005-1212
Platform(s):Microsoft Windows 2000
Microsoft Windows 98
Microsoft Windows ME
Microsoft Windows Server 2003
Microsoft Windows XP
Product(s):Microsoft Interactive Training
Definition Synopsis
  • Microsoft Interactive Training is installed
  • AND the version of Orun32.exe is less than 3.5.0.117
  • AND NOT the patch kb898458 is installed
  • BACK