Oval Definition:oval:org.mitre.oval:def:1612
Revision Date:2011-05-16Version:47
Title:Server 2003 Graphics Rendering Engine Vulnerability
Description:The Windows Graphical Device Interface library (GDI32.DLL) in Microsoft Windows allows remote attackers to execute arbitrary code via a Windows Metafile (WMF) format image with a crafted SETABORTPROC GDI Escape function call, related to the Windows Picture and Fax Viewer (SHIMGVW.DLL), a different vulnerability than CVE-2005-2123 and CVE-2005-2124, and as originally discovered in the wild on unionseek.com.
Family:windowsClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2005-4560
Platform(s):Microsoft Windows Server 2003
Product(s):
Definition Synopsis
  • Windows Server 2003 is installed
  • AND NOT Win2K/XP/2003 is patched
  • AND the version of Gdi32.dll is less than 5.2.3790.462
  • BACK