<html>
<head>
<STYLE>
ef\:* { behavior: url(#default#VML); }
</STYLE>
</head>
<body>
<pre>
================================================
MS08-052: GDI+ Vulnerability
————————————————
Operating System: XP SP2
Internet Explorer Version: 6.0.2900.2180
Gdiplus.dll Version: 5.1.3102.2180
阅读全文 »
Tags: GDI+,
GdiPlus.dll,
MS08-052
MS Windows GDI+ .ico Remote Division By Zero
Application: GDIPLUS.DLL
Web Site: http://www.microsoft.com/
Platform: Windows *
Bug: Division By Zero
Tested agains: XP SP3 fully patched
Note: This have nothing to do with http://milw0rm.com/exploits/4044
——————————————————-
阅读全文 »
Tags: Exploit,
GDI+,
GdiPlus.dll
作者:axis
今天是MS的Patch Tuesday,比较吸引眼球的就是MS08-052,MS08-055等
TK教主老师首先在blog上分析了08-052的危险性,看上去确实很有潜力啊!
MS08-052
不过之后看到SWI写一篇关于08-052的blog里,提到MS08-052的patch有对winsxs文件夹做策略控制,让应用程序只会去加载更新过的gdiplus.dll。
winsxs是MS用来做dll的版本控制的一个东西
阅读全文 »
Tags: GDI+,
GdiPlus.dll,
MS08-052
作者:tombkeeper
这个补丁日只出了一篇Windows本身的公告,MS08-052。不过这里面含了一堆让某些人激动不已眼睛里直冒¥符号的漏洞:
GDI+ VML 缓冲区溢出漏洞 – CVE-2007-5348
GDI+ EMF 内存损坏漏洞 – CVE-2008-3012
GDI+ GIF 分析漏洞 – CVE-2008-3013
GDI+ WMF 缓冲区溢出漏洞 – CVE-2008-3014
GDI+ BMP 整数溢出漏洞 – CVE-2008-3015
所以,高公告,水果味儿,一篇顶过去五篇。
阅读全文 »
Tags: GDI+,
GdiPlus.dll,
MS08-052