Trend Micro Security

Microsoft Outlook Express NNTP Response Parsing Buffer Overflow

  危険度: :
  CVE識別番号: CVE-2005-1213,MS05-030

  概要

Stack-based buffer overflow in the news reader for Microsoft Outlook Express (MSOE.DLL) 5.5 SP2, 6, and 6 SP1 allows remote malicious NNTP servers to execute arbitrary code via a LIST response with a long second field.

  トレンドマイクロの対策

  • 1000780 - Microsoft Outlook Express NNTP Response Parsing Buffer Overflow

  対応方法

  Trend Micro Deep Security DPI Rule Number: 1000780
  Trend Micro Deep Security DPI Rule Name: 1000780 - Microsoft Outlook Express NNTP Response Parsing Buffer Overflow

  影響を受けるソフトウェア

  • Microsoft Outlook Express 5.5 SP2
  • Microsoft Outlook Express 6
  • Microsoft Outlook Express 6 SP1