| Revision Date: | 2012-03-26 | Version: | 47 | | Title: | Fax Cover Page Use After Free Vulnerability | | Description: | Heap-based buffer overflow in the CDrawPoly::Serialize function in fxscover.exe in Microsoft Windows Fax Services Cover Page Editor 5.2 r2 in Windows XP Professional SP3, Server 2003 R2 Enterprise Edition SP2, and Windows 7 Professional allows remote attackers to execute arbitrary code via a long record in a Fax Cover Page (.cov) file. NOTE: some of these details are obtained from third party information. | | Family: | windows | Class: | vulnerability | | Status: | ACCEPTED | Reference(s): | CVE-2010-4701
| | Platform(s): | Microsoft Windows 7 Microsoft Windows Server 2003 Microsoft Windows Server 2008 Microsoft Windows Server 2008 R2 Microsoft Windows Vista Microsoft Windows XP
| Product(s): | | | Definition Synopsis | | Vulnerable Microsoft Windows XP (x86) SP3 Microsoft Windows XP (x86) SP3 is installed
AND Mfc42.dll or Fxscover.exe
the version of Mfc42.dll is less than 6.2.8081.0
OR the version of Fxscover.exe is less than 5.2.2600.6078
OR Vulnerable Microsoft Windows XP x64 SP2, Server 2003 x64/ia64 SP2
Vulnerable Microsoft Windows XP x64 SP2, Server 2003 x64/ia64 SP2
Microsoft Windows XP x64 Edition SP2 is installed
OR Microsoft Windows Server 2003 SP2 (x64) is installed
OR Microsoft Windows Server 2003 (ia64) SP2 is installed
AND Mfc42.dll or Fxscover.exe
the version of Mfc42.dll is less than 6.5.9151.0
OR the version of Fxscover.exe is less than 5.2.3790.4829
OR Vulnerable Microsoft Server 2003 x86 SP2
Microsoft Windows Server 2003 SP2 (x86) is installed
AND Mfc42.dll or Fxscover.exe
the version of Mfc42.dll is less than 6.6.8064.0
OR the version of Fxscover.exe is less than 5.2.3790.4829
OR Vulnerable Microsoft Windows Vista SP1 x86/x64, Server 2008 32bit/x64/ia64
Vulnerable Microsoft Windows Vista SP1 x86/x64, Server 2008 32bit/x64/ia64
Microsoft Windows Vista (32-bit) Service Pack 1 is installed
OR Microsoft Windows Vista x64 Edition Service Pack 1 is installed
OR Microsoft Windows Server 2008 (32-bit) is installed
OR Microsoft Windows Server 2008 (64-bit) is installed
OR Microsoft Windows Server 2008 (ia-64) is installed
AND Mfc42.dll or Fxscover.exe - GDR or LDR Service branch
the version of Fxscover.exe is less than 6.0.6001.18597
OR LDR
the version of Fxscover.exe is greater than or equal 6.0.6001.22000
AND the version of Fxscover.exe is less than 6.0.6001.22852
OR the version of Mfc42.dll is less than 6.6.8064.0
OR Vulnerable Microsoft Windows Vista SP2 x86/x64, Server 2008 SP2 32bit/x64/ia64
Vulnerable Microsoft Windows Vista SP2 x86/x64, Server 2008 SP2 32bit/x64/ia64
Microsoft Windows Vista (32-bit) Service Pack 2 is installed
OR Microsoft Windows Vista x64 Edition Service Pack 2 is installed
OR Microsoft Windows Server 2008 (32-bit) Service Pack 2 is installed
OR Microsoft Windows Server 2008 x64 Edition Service Pack 2 is installed
OR Microsoft Windows Server 2008 Itanium-Based Edition Service Pack 2 is installed
AND Mfc42.dll or Fxscover.exe - GDR or LDR Service branch
the version of Fxscover.exe is less than 6.0.6002.18403
OR LDR
the version of Fxscover.exe is greater than or equal 6.0.6002.22000
AND the version of Fxscover.exe is less than 6.0.6002.22586
OR the version of Mfc42.dll is less than 6.6.8064.0
OR Vulnerable Microsoft Windows 7 x86/x64, Windows Server 2008 R2 x86/x64/ia64
Vulnerable Microsoft Windows 7 x86/x64, Windows Server 2008 R2 x86/x64/ia64
Microsoft Windows 7 (32-bit) is installed
OR Microsoft Windows 7 x64 Edition is installed
OR Microsoft Windows Server 2008 R2 x64 Edition is installed
OR Microsoft Windows Server 2008 R2 Itanium-Based Edition is installed
AND Mfc42.dll or Fxscover.exe - GDR or LDR Service branch
the version of Fxscover.exe is less than 6.1.7600.16759
OR LDR
the version of Fxscover.exe is greater than or equal 6.1.7600.20000
AND the version of Fxscover.exe is less than 6.1.7600.20900
OR the version of Mfc42.dll is less than 6.6.8064.0
OR Vulnerable Microsoft Windows 7 x86/x64 SP1, Windows Server 2008 R2 x64 SP1
Vulnerable Microsoft Windows 7 x86/x64 SP1, Windows Server 2008 R2 x64 SP1
Microsoft Windows 7 (32-bit) Service Pack 1 is installed
OR Microsoft Windows 7 x64 Service Pack 1 is installed
OR Microsoft Windows Server 2008 R2 x64 Service Pack 1 is installed
OR Microsoft Windows Server 2008 R2 Itanium-Based Edition Service Pack 1 is installed
AND Mfc42.dll or Fxscover.exe - GDR or LDR Service branch
the version of Fxscover.exe is less than 6.1.7601.17559
OR LDR
the version of Fxscover.exe is greater than or equal 6.1.7601.21000
AND the version of Fxscover.exe is less than 6.1.7601.21659
OR the version of Mfc42.dll is less than 6.6.8064.0
|
|