Microsoft Windows .CHM Denial Of Service
Publish Date: 23 lutego 2011
Severity: : Critical
CVE Kennungen: : CVE-2009-0119
Advisory Date: 23 lutego 2011
DESCRIPTION
Microsoft Windows is prone to a Denial of Service vulnerability, that lets attackers to gain access by specially crafted chm files.
Buffer overflow in Microsoft Windows XP SP3 allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via a crafted .chm file.
INFORMATION EXPOSURE
Trend Micro Deep Security shields networks through Deep Packet Inspection (DPI) rules. Trend Micro customers using OfficeScan with Intrusion Defense Firewall (IDF) plugin are also protected from attacks using these vulnerabilities. Please refer to the filter number and filter name when applying appropriate DPI and/or IDF rules.
SOLUTION
Trend Micro Deep Security DPI Rule Number: 1003204
Trend Micro Deep Security DPI Rule Name: 1003204 - Microsoft Windows .CHM Denial Of Service
AFFECTED SOFTWARE AND VERSION:
- Microsoft Windows XP