Microsoft Windows Vector Markup Language Buffer Overflow

0

Author: Dave Lewis

More on the patch Tuesday hit parade.

From Secunia:

Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user’s system

The vulnerability is caused due to an integer overflow error in the Vector Markup Language (VML) implementation and can be exploited to cause a heap-based buffer overflow via e.g. a specially crafted web page or HTML e-mail.

Successful exploitation allows execution of arbitrary code.

NOTE: According to Microsoft, the vulnerability is being actively exploited.

Article Link

Tags: , , ,

Tag It:
  • Digg
  • del.icio.us
  • Slashdot
  • Technorati
  • SphereIt
  • StumbleUpon
  • NewsVine
  • LinkedIn
  • TwitThis
  • Facebook
  • Live

Speak Your Mind

Tell us what you're thinking...
and oh, if you want a pic to show with your comment, go get a gravatar!