Oval Definition:oval:org.mitre.oval:def:5868
Revision Date:2015-08-10Version:11
Title:Microsoft Malformed BMP Filter Vulnerability
Description:Microsoft Office 2000 SP3 and XP SP3; Office Converter Pack; and Works 8 do not properly parse the length of a BMP file, which allows remote attackers to execute arbitrary code via a crafted BMP file, aka the "Malformed BMP Filter Vulnerability."
Family:windowsClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2008-3020
Platform(s):Microsoft Windows 2000
Microsoft Windows Server 2003
Microsoft Windows XP
Product(s):Microsoft Office 2000
Microsoft Office Converter Pack
Microsoft Office Project 2002
Microsoft Office XP
Microsoft Works
Definition Synopsis
  • Office 2000, XP, Project 2002 or Office File Converter Pack
  • Microsoft Office 2000 is installed
  • OR Microsoft Office XP is installed
  • OR Microsoft Project 2002 SP1 is installed
  • OR Microsoft Office Converter Pack is installed
  • AND Gifimp32.flt version is less than 2003.1100.8165.0
  • BACK