Home / bulletins

MS08-052 – Critical: Vulnerabilities in GDI+ Could Allow Remote Code Execution (954593) - Version:2.0

Posted on 12 September 2008

There is an newer version: MS08-052 - Version: :4.0

Critical

Severity Rating: Critical - Revision Note: V2.0 (September 12, 2008): Bulletin updated to add Microsoft Office Project 2002 Service Pack 2, all Office Viewer software for Microsoft Office 2003, and all Office Viewer software for 2007 Microsoft Office System as Affected Software. Details for this bulletin revision are provided in the Why was this bulletin revised on September 12, 2008? entry in the Frequently Asked Questions (FAQ) Related to this Security Update section.Summary: This security update resolves several privately reported vulnerabilities in Microsoft Windows GDI+. These vulnerabilities could allow remote code execution if a user viewed a specially crafted image file using affected software or browsed a Web site that contains specially crafted content. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.

Link

Other versions

 

TOP