Sophos

Online support

Product maintenance

Contact support

Support services

Vulnerability: MS08-052. Vulnerabilities in GDI+ Could Allow Remote Code Execution (954593)

Back to Latest vulnerabilities homepage

Click any highlighted term for further explanation.

 Details
Vulnerability name/brief descriptionVulnerabilities in GDI+ Could Allow Remote Code Execution (954593) - MS08-052
CVE/CAN nameCVE-2007-5348,  CVE-2008-3012, CVE-2008-3013, CVE-2008-3014, CVE-2008-3015
Vendor threat levelCritical
SophosLabs threat levelHigh
SolutionUsers are advised to apply the vendor patch MS08-052.
Vendor descriptionThis security update resolves several privately reported vulnerabilities in Microsoft Windows GDI+. These vulnerabilities could allow remote code execution if a user viewed a specially crafted image file using affected software or browsed a Web site that contains specially crafted content. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.
SophosLabs commentsThis advisory encompasses vulnerabilities in the parsing of several different file formats. Given that malicious web pages could link to files meant to exploit the vulnerabilities of this format, this is definitely a very serious threat. SophosLabs assigned it the risk level high only because we have not seen any samples in the wild yet.
SophosLabs testing resultN/A
Currently known exploitsAt the time of writing SophosLabs has seen no samples of malware attempting to exploit this vulnerability. Should this situation change samples will be analysed and we will take action as necessary.
First sample seenN/A
Discovery date9 September 2008
Affected softwareWindows XP
Windows Server 2003
Windows Vista
Windows Server 2008
Microsoft Internet Explorer 6 Service Pack 1 when installed on Microsoft Windows 2000 Service Pack 4
Microsoft Digital Image Suite 2006
SQL Server 2000 Reporting Services Service Pack 2
SQL Server 2005
Microsoft Report Viewer 2005 Service Pack 1 Redistributable Package
Microsoft Report Viewer 2008 Redistributable Package
Microsoft Office XP
Microsoft Office 2003
2007 Microsoft Office System
Microsoft Visio 2002
Microsoft Office PowerPoint Viewer 2003
Microsoft Works 8
Microsoft Forefront Client Security 1.0
References

http://www.microsoft.com/technet/security/Bulletin/ms08-052.mspx
http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-5348
http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-3012
http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-3013
http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-3014
http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-3015

Credits

This vulnerability was shared with Sophos in advance of public disclosure by TippingPoint through its Zero Day Initiative

Revisions10 September 2008 - initial analysis written

Explanation of terms

Vulnerability Name/Brief Description:
Vendor identifier plus a brief description of the type of attack.

CVE/CAN Name:
Currently assigned CVE name. If a CVE name doesn't exist the CAN name will be used until a CVE has been assigned.

Vendor Threat Level:

Threat level assigned by the vendor

SophosLabs Threat Level:
Threat level assigned by SophosLabs

Solution:
Vendor-supplied Patch identifier and recommended solution, or workaround if applicable.

Vendor Description:
Summary of the cause and potential effect of the vulnerability provided by the vendor.

SophosLabs Comments:
SophosLabs' opinions and observations of the vulnerability in question.

SophosLabs Testing Result:
Details of completed lab testing, if applicable. Please note that the lab test environment may differ significantly from user environments.

Currently Known Exploits:
List of identities for known exploits, if applicable.

First Sample Seen:
Date of the first sample seen by SophosLabs.

Discovery Date:
Date of the earliest known publically disclosed advisory.

Affected Software:
Vulnerable platforms and software versions.

 

 

If you need more information or guidance, then please contact technical support.