Email us! Subscribe to Liquidmatrix!

Microsoft Windows Vector Markup Language Buffer Overflow

More on the patch Tuesday hit parade.

From Secunia:

Description:
A vulnerability has been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user’s system

The vulnerability is caused due to an integer overflow error in the Vector Markup Language (VML) implementation and can be exploited to cause a heap-based buffer overflow via e.g. a specially crafted web page or HTML e-mail.

Successful exploitation allows execution of arbitrary code.

NOTE: According to Microsoft, the vulnerability is being actively exploited.

Article Link

Tags: , , ,

Tag It:
  • Digg
  • del.icio.us
  • Slashdot
  • Technorati
  • SphereIt
  • StumbleUpon
  • Fark
  • YahooMyWeb
  • Furl
  • Spurl
  • Ma.gnolia
  • NewsVine
Related Articles:

  • Zero Day Fun With VML
  • Microsoft Windows CFileFind Class Buffer Overflow
  • Microsoft Security Bulletin for August 2007
  • WinDVD ActiveX Control Buffer Overflow
  • IBM DB2 Buffer Overflow
  • Leave a Comment