CVE
- Id
- 8628
- CVE No.
- CVE-2004-0200
- Status
- Candidate
- Description
- Buffer overflow in the JPEG (JPG) parsing engine in the Microsoft Graphic Device Interface Plus (GDI+) component, GDIPlus.dll, allows remote attackers to execute arbitrary code via a JPEG image with a small JPEG COM field length that is normalized to a large integer length before a memory copy operation.
- Phase
- Assigned (20040311)
- Votes
- None (candidate not yet proposed)
- Comments
Related CVE References
Id | CVE Id | CVE No. | Reference | Actions |
---|---|---|---|---|
53965 | 8628 | CVE-2004-0200 | BUGTRAQ:20040914 Microsoft GDIPlus.DLL JPEG Parsing Engine Buffer Overflow | View |
53966 | 8628 | CVE-2004-0200 | URL:http://marc.info/?l=bugtraq&m=109524346729948&w=2 | View |
53967 | 8628 | CVE-2004-0200 | MS:MS04-028 | View |
53968 | 8628 | CVE-2004-0200 | URL:http://www.microsoft.com/technet/security/bulletin/ms04-028.asp | View |
53969 | 8628 | CVE-2004-0200 | CERT:TA04-260A | View |
53970 | 8628 | CVE-2004-0200 | URL:http://www.us-cert.gov/cas/techalerts/TA04-260A.html | View |
53971 | 8628 | CVE-2004-0200 | CERT-VN:VU#297462 | View |
53972 | 8628 | CVE-2004-0200 | URL:http://www.kb.cert.org/vuls/id/297462 | View |
53973 | 8628 | CVE-2004-0200 | OVAL:oval:org.mitre.oval:def:1105 | View |
53974 | 8628 | CVE-2004-0200 | URL:http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1105 | View |
53975 | 8628 | CVE-2004-0200 | OVAL:oval:org.mitre.oval:def:1721 | View |
53976 | 8628 | CVE-2004-0200 | URL:http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:1721 | View |
53977 | 8628 | CVE-2004-0200 | OVAL:oval:org.mitre.oval:def:2706 | View |
53978 | 8628 | CVE-2004-0200 | URL:http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:2706 | View |
53979 | 8628 | CVE-2004-0200 | OVAL:oval:org.mitre.oval:def:3038 | View |
53980 | 8628 | CVE-2004-0200 | URL:http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:3038 | View |
53981 | 8628 | CVE-2004-0200 | OVAL:oval:org.mitre.oval:def:3082 | View |
53982 | 8628 | CVE-2004-0200 | URL:http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:3082 | View |
53983 | 8628 | CVE-2004-0200 | OVAL:oval:org.mitre.oval:def:3320 | View |
53984 | 8628 | CVE-2004-0200 | URL:http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:3320 | View |
53985 | 8628 | CVE-2004-0200 | OVAL:oval:org.mitre.oval:def:3810 | View |
53986 | 8628 | CVE-2004-0200 | URL:http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:3810 | View |
53987 | 8628 | CVE-2004-0200 | OVAL:oval:org.mitre.oval:def:3881 | View |
53988 | 8628 | CVE-2004-0200 | URL:http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:3881 | View |
53989 | 8628 | CVE-2004-0200 | OVAL:oval:org.mitre.oval:def:4003 | View |
53990 | 8628 | CVE-2004-0200 | URL:http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:4003 | View |
53991 | 8628 | CVE-2004-0200 | OVAL:oval:org.mitre.oval:def:4216 | View |
53992 | 8628 | CVE-2004-0200 | URL:http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:4216 | View |
53993 | 8628 | CVE-2004-0200 | OVAL:oval:org.mitre.oval:def:4307 | View |
53994 | 8628 | CVE-2004-0200 | URL:http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:4307 | View |
53995 | 8628 | CVE-2004-0200 | XF:win-jpeg-bo(16304) | View |
Related JVN
Id | JVN No. | Title | Summary | CVE No. | CVE Id | CVSS_v2 | CVSS_v3 | JVN URL | Actions |
---|---|---|---|---|---|---|---|---|---|
62933 | JVNDB-2004-000275 | Microsoft Windows の HTML ヘルプ機能におけるヒープオーバーフローの脆弱性 | Microsoft Windows の HTML ヘルプ機能 (hh.exe) には、ヘルプファイル (.chm) に含まれる Length パラメータに対するチェックが不適切であるため、ヒープオーバーフローが発生する脆弱性が存在します。 | CVE-2004-0201 | 8628 | 10 | http://jvndb.jvn.jp/ja/contents/2004/JVNDB-2004-000275.html | View |