Oval Definition:oval:org.mitre.oval:def:897
Revision Date:2008-03-24Version:44
Title:Windows NT WMF/EMF Buffer Overflow
Description:Buffer overflow in the rendering for (1) Windows Metafile (WMF) or (2) Enhanced Metafile (EMF) image formats in Microsoft Windows NT 4.0 SP6a, 2000 SP2 through SP4, and XP SP1 allows remote attackers to execute arbitrary code via a malformed WMF or EMF image.
Family:windowsClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2003-0906
Platform(s):Microsoft Windows NT
Product(s):Enhanced Metafile (EMF)
Windows Metafile (WMF)
Definition Synopsis
  • Microsoft Windows NT is installed
  • AND a vulnerable version of mf3216.dll exists on NT
  • non Terminal Server and mf3216.dll is less than 4.0.1381.7263
  • NOT this is an NT Terminal Server
  • AND the version of mf3216.dll is less than 4.0.1381.7263
  • OR NT Terminal Server and mf3216.dll is less than 4.0.1381.33562
  • this is an NT Terminal Server
  • AND the version of mf3216.dll is less than 4.0.1381.33562
  • AND NOT the patch kb835732 is installed
  • BACK