Revision Date: | 2006-01-12 | Version: | 3 |
Title: | GDI+ JPEG Parsing Engine Buffer Overflow (Project 2003) |
Description: | Buffer overflow in the JPEG (JPG) parsing engine in the Microsoft Graphic Device Interface Plus (GDI+) component, GDIPlus.dll, allows remote attackers to execute arbitrary code via a JPEG image with a small JPEG COM field length that is normalized to a large integer length before a memory copy operation. |
Family: | windows | Class: | vulnerability |
Status: | ACCEPTED | Reference(s): | CVE-2004-0200
|
Platform(s): | Microsoft Windows 2000 Microsoft Windows NT Microsoft Windows XP
| Product(s): | Microsoft Project Professional 2003
|
Definition Synopsis |
Project Professional 2003 Installed AND the version of gdiplus.dll is less than 6.0.3264.0
|