Home / bulletins MS10-005 - Moderate: Vulnerability in Microsoft Paint Could Allow Remote Code Execution (978706) - Version:1.1
Posted on 11 February 2010
ModerateSeverity Rating: Moderate - Revision Note: V1.1 (February 10, 2010): Corrected Security Update Deployment subsections to indicate that in some cases, the update does not require a restart. Corrected the verification registry key for all supported x64-based editions of Windows XP. These are informational changes only. Customers who have already successfully updated their systems do not need to take any action.Summary: This security update resolves a privately reported vulnerability in Microsoft Paint. The vulnerability could allow remote code execution if a user viewed a specially crafted JPEG image file using Microsoft Paint. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.