Oval Definition:oval:org.mitre.oval:def:3203
Revision Date:2007-02-20Version:42
Title:Server 2003 Hyperlink Object Library Unchecked Buffer Vulnerability
Description:The Hyperlink Object Library for Windows 98, 2000, XP, and Server 2003 allows remote attackers to execute arbitrary code via a crafted link that triggers an "unchecked buffer" in the library, possibly due to a buffer overflow.
Family:windowsClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2005-0057
Platform(s):Microsoft Windows Server 2003
Product(s):Hyperlink Object Library
Definition Synopsis
  • Windows Server 2003 is installed
  • AND a vulnerable version of hlink.dll exists on Server 2003
  • machine has followed the GDR update path and hlink.dll is less than 5.2.3790.225
  • OR machine has followed the QFE update path and hlink.dll is less than 5.2.3790.227
  • AND NOT the patch kb888113 is installed (Hotfix key)
  • BACK