Microsoft HTML Help Input Validation Flaw Lets Remote Users Execute Arbitrary Code
|
|
SecurityTracker Alert ID: 1014195 |
|
SecurityTracker URL: http://securitytracker.com/id/1014195
|
|
CVE Reference:
CAN-2005-1208
(Links to External Site)
|
Date: Jun 14 2005
|
Impact:
Execution of arbitrary code via network, User access via network
|
Fix Available: Yes Vendor Confirmed: Yes
|
Version(s): 2000 SP4, XP SP2, 2003 SP1, 98; and prior service packs
|
Description:
A vulnerability was reported in Microsoft HTML Help. A remote user can execute arbitrary code on the target system.
HTML Help does not properly validate user-supplied input. A remote user can create specially crafted HTML that, when loaded by the target user, will invoke HTML Help and execute arbitrary code. The code will run with the privileges of the target user.
The vendor credits eEye Digital Security and Peter Winter-Smith of Next Generation Security Software Ltd. with reporting this vulnerability.
|
Impact:
A remote user can cause arbitrary code to be executed on the target user's system with the privileges of the target user.
|
Solution:
The vendor has issued the following fixes:
Microsoft Windows 2000 Service Pack 3 and Microsoft Windows 2000 Service Pack 4:
http://www.microsoft.com/downloads/details.aspx?FamilyId=9AF346AE-4807-42F4-95E2-8F5FAE321102
Microsoft Windows XP Service Pack 1 and Microsoft Windows XP Service Pack 2:
http://www.microsoft.com/downloads/details.aspx?FamilyId=17833B94-AF70-47BD-872C-033A3F0E982A
Microsoft Windows XP 64-Bit Edition Service Pack 1 (Itanium):
http://www.microsoft.com/downloads/details.aspx?FamilyId=A6A807F2-AD02-4D15-A198-CF8A728B3A25
Microsoft Windows XP 64-Bit Edition Version 2003 (Itanium):
http://www.microsoft.com/downloads/details.aspx?FamilyId=EE8BA26D-CFDA-428F-9F9B-16908DB88C80
Microsoft Windows XP Professional x64 Edition:
http://www.microsoft.com/downloads/details.aspx?FamilyId=CE81AE3B-4FA4-4576-8539-AB49E575A98F
Microsoft Windows Server 2003 and Microsoft Windows Server 2003 Service Pack 1:
http://www.microsoft.com/downloads/details.aspx?FamilyId=A19EEE21-7DF2-4B95-A4C5-44C6CAA5AF9A
Microsoft Windows Server 2003 for Itanium-based Systems and Microsoft Windows Server 2003 with SP1 for Itanium-based Systems:
http://www.microsoft.com/downloads/details.aspx?FamilyId=EE8BA26D-CFDA-428F-9F9B-16908DB88C80
Microsoft Windows Server 2003 x64 Edition:
http://www.microsoft.com/downloads/details.aspx?FamilyId=2E8716F7-3A81-4482-8C92-2A2DC3C2F782
Slovenian:
http://download.microsoft.com/download/0/3/E/03E845F6-7F6E-49A6-8DDA-C0338E80E517/WindowsME-KB896358-SLV.EXE
Slovakian:
http://download.microsoft.com/download/0/3/E/03E845F6-7F6E-49A6-8DDA-C0338E80E517/WindowsME-KB896358-SKY.EXE
Thai:
http://download.microsoft.com/download/0/3/E/03E845F6-7F6E-49A6-8DDA-C0338E80E517/WindowsME-KB896358-THA.EXE
A restart is not required.
|
Vendor URL: www.microsoft.com/technet/security/Bulletin/MS05-026.mspx (Links to External Site)
|
Cause:
Input validation error
|
Underlying OS:
|
|
Message History:
None.
|
Source Message Contents
|
Date: Tue, 14 Jun 2005 13:17:08 -0400
Subject: http://www.microsoft.com/technet/security/Bulletin/MS05-026.mspx
|
http://www.microsoft.com/technet/security/Bulletin/MS05-026.mspx
|
|