Oval Definition:
oval:org.mitre.oval:def:5868
Revision Date
:
2015-08-10
Version
:
11
Title
:
Microsoft Malformed BMP Filter Vulnerability
Description
:
Microsoft Office 2000 SP3 and XP SP3; Office Converter Pack; and Works 8 do not properly parse the length of a BMP file, which allows remote attackers to execute arbitrary code via a crafted BMP file, aka the "Malformed BMP Filter Vulnerability."
Family
:
windows
Class
:
vulnerability
Status
:
ACCEPTED
Reference(s)
:
CVE-2008-3020
Platform(s)
:
Microsoft Windows 2000
Microsoft Windows Server 2003
Microsoft Windows XP
Product(s)
:
Microsoft Office 2000
Microsoft Office Converter Pack
Microsoft Office Project 2002
Microsoft Office XP
Microsoft Works
Definition Synopsis
Office 2000, XP, Project 2002 or Office File Converter Pack
Microsoft Office 2000 is installed
OR
Microsoft Office XP is installed
OR
Microsoft Project 2002 SP1 is installed
OR
Microsoft Office Converter Pack is installed
AND
Gifimp32.flt version is less than 2003.1100.8165.0
BACK