[36492] in bugtraq
Buffer Overrun in JPEG Processing (GDI+) Could Allow Code
daemon@ATHENA.MIT.EDU (Jérôme" ATHIAS)
Tue Sep 14 23:09:16 2004
Date: 14 Sep 2004 19:02:29 -0000
Message-ID: <20040914190229.18482.qmail@www.securityfocus.com>
Content-Type: text/plain
Content-Disposition: inline
Content-Transfer-Encoding: binary
MIME-Version: 1.0
From: "Jérôme" ATHIAS <jerome.athias@caramail.com>
To: bugtraq@securityfocus.com
A buffer overrun vulnerability exists in the processing of JPEG image formats that could allow remote code execution on an affected system. Any program that processes JPEG images on the affected systems could be vulnerable to this attack, and any system that uses the affected programs or components could be vulnerable to this attack. An attacker who successfully exploited this vulnerability could take complete control of an affected system.
CAN-2004-0200
http://www.microsoft.com/technet/security/Bulletin/MS04-028.mspx