New Search

GDI+ Integer Overflow Vulnerability

oval:org.mitre.oval:def:11854

Integer overflow in gdiplus.dll in GDI+ in Microsoft Windows XP SP2 and SP3 Windows Server 2003 SP2 Windows Vista SP1 and SP2 Windows Server 2008 Gold and SP2 and Office XP SP3 allows remote attackers to execute arbitrary code via a crafted EMF image aka "GDI+ Integer Overflow Vulnerability."

Family:
windows
Status:
ACCEPTED
Platform(s):
  • Microsoft Windows Vista
  • Microsoft Windows XP
  • Microsoft Windows Server 2008
  • Microsoft Windows Server 2003
Class:
vulnerability
Reference(s):
  • CVE-2011-0041
Product(s):
  • Microsoft Office XP