Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

MS07-064 ? Critical: Vulnerabilities in DirectX Could Allow Remote Code Execution (941568) - Version:1.2

BugsAlert Home > MS07-064 ? Critical: Vulnerabilities in DirectX Could Allow Remote Code Execution (941568) - Version:1.2
 
 

Severity Rating: Critical - Revision Note: Bulletin updated to reflect a change to the Removal Information text in the Windows Vista Reference Table portion of the Security Update Information section. Also removed the web-based mitigation from vulnerability CVE-2007-3901.Summary: This critical security update resolves two privately reported vulnerabilities in Microsoft DirectX. These vulnerabilities could allow code execution if a user opened a specially crafted file used for streaming media in DirectX. If a user is logged on with administrative user rights, an attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.




Original Source: http://www.microsoft.com/technet/security/bulletin/MS07-064.mspx?pubDate=2007-12-19

Learn more about MS07-064 ? Critical: Vulnerabilities in DirectX Could Allow Remote Code Execution (941568) - Version:1.2
 
Tags: ms07-064 critical vulnerabilities directx remote code execution
 941568 version 1.2

Related Items

      FrSIRT - Debian Security Update Fixes b2evolution Cross Site Scripting Issue

      TROJ_BHO.SJ

      CVE-2008-0955 (creative_software_autoupdate_engine)

      HTML_VALIDIN.Z

      FrSIRT - Gentoo Security Update Fixes Horde Local File Inclusion Vulnerability

      Bugtraq: iDefense Security Advisory 12.11.07: Microsoft Internet Explorer JavaScript setExpression Heap Corruption Vulnerability

      MS08-023 - Critical: Security Update of ActiveX Kill Bits (948881)

 

Pixel