(MS11-024) Vulnerability in Windows Fax Cover Page Editor Could Allow Remote Code Execution (2527308)
Publish Date: 17 juin 2011
Gravité: : Élevé
Identifiant(s) CVE: : CVE-2010-3974,CVE-2010-4701
Date du conseil: 17 juin 2011
Description
This security update addresses two vulnerabilities in Microsoft Windows, which could allow remote code execution. A remote malicious user could gain the same user rights as the logged on user if a user opens a specially crafted fax cover page file (.cov) employing the Windows Fax Cover Page Editor.
Information Exposure Rating:
For information on patches specific to the affected software, please proceed to the Microsoft Web page.
Affected software and version:
- Windows XP Service Pack 3
- Windows XP Professional x64 Edition Service Pack 2
- Windows Server 2003 Service Pack 2
- Windows Server 2003 x64 Edition Service Pack 2
- Windows Server 2003 with SP2 for Itanium-based Systems
- Windows Vista Service Pack 1 and Windows Vista Service Pack 2
- Windows Vista x64 Edition Service Pack 2
- Windows Vista x64 Edition Service Pack 1
- Windows Server 2008 for 32-bit Systems Service Pack 2**
- Windows Server 2008 for 32-bit Systems
- Windows Server 2008 for x64-based Systems Service Pack 2**
- Windows Server 2008 for x64-based Systems
- Windows Server 2008 for Itanium-based Systems Service Pack 2
- Windows Server 2008 for Itanium-based Systems
- Windows 7 for 32-bit Systems Service Pack 1
- Windows 7 for 32-bit Systems
- Windows 7 for x64-based Systems Service Pack 1
- Windows 7 for x64-based Systems
- Windows Server 2008 R2 for x64-based Systems Service Pack 1**
- Windows Server 2008 R2 for x64-based Systems
- Windows Server 2008 R2 for Itanium-based Systems Service Pack 1
- Windows Server 2008 R2 for Itanium-based Systems