MS.Visio.DXF.File.Handling.Memory.Corruption
Description
This indicates an attempt to exploit a memory corruption vulnerability in Microsoft Visio.
The vulnerability is caused by an input validation error that occurs in DWGDP.DLL while processing malformed DXF files. It allows remote attackers to crash the vulnerable software or execute arbitrary code via a crafted DXF file.
Affected Products
Microsoft Office XP SP3
Microsoft Office 2003 SP2
Microsoft Office 2003 SP3
2007 Microsoft Office System
2007 Microsoft Office System SP1
Impact
System Compromise: remote attackers can gain control of vulnerable systems.
Recommended Actions
Refer to the vendor's web site for suggest workground.
http://www.microsoft.com/technet/security/Bulletin/ms08-019.mspx
Telemetry
Coverage
IPS (Regular DB) | |
IPS (Extended DB) |