Americas

  • United States

Asia

Oceania

roger_grimes
Columnist

New WMF exploits on the loose

Analysis
Jan 09, 20061 min
Data and Information SecuritySecurity

New WMF exploits have been posted to the web. Microsoft Windows Graphics Rendering Engine Multiple Memory Corruption Vulnerabilities See here and here. QUOTE: Microsoft Windows WMF graphics rendering engine is affected by multiple memory corruption vulnerabilities. These issues affect the 'ExtCreateRegion' and 'ExtEscape' functions. These problems present themselves when a user views a malicious WMF formatted fi

New WMF exploits have been posted to the web.

Microsoft Windows Graphics Rendering Engine Multiple Memory Corruption Vulnerabilities

See here and here.

QUOTE: Microsoft Windows WMF graphics rendering engine is affected by multiple memory corruption vulnerabilities. These issues affect the ‘ExtCreateRegion’ and ‘ExtEscape’ functions. These problems present themselves when a user views a malicious WMF formatted file containing specially crafted data. Reports indicate that these issues lead to a denial of service condition, however, it is conjectured that arbitrary code execution is possible as well. Any code execution that occurs will be with the privileges of the user viewing a malicious image.

An attacker may gain SYSTEM privileges if an administrator views the malicious file.

roger_grimes
Columnist

Roger A. Grimes is a contributing editor. Roger holds more than 40 computer certifications and has authored ten books on computer security. He has been fighting malware and malicious hackers since 1987, beginning with disassembling early DOS viruses. He specializes in protecting host computers from hackers and malware, and consults to companies from the Fortune 100 to small businesses. A frequent industry speaker and educator, Roger currently works for KnowBe4 as the Data-Driven Defense Evangelist and is the author of Cryptography Apocalypse.

More from this author