1. Symantec/
  2. Security Response/
  3. Attack Signatures/
  4. Attack: MS Windows Thumbnail Remote Code Execution

Attack: MS Windows Thumbnail Remote Code Execution

Severity: High

This attack could pose a serious security threat. You should take immediate action to stop any damage or prevent further damage from happening.

Description

This signature will detect attempts to exploit a remote code execution vulnerability in Microsoft Windows.

Additional Information

Microsoft Windows is prone to a remote stack-based buffer-overflow vulnerability in the Windows Graphics Rendering Engine because the software fails to perform adequate boundary-checks on user-supplied data.

An attacker can exploit this issue by enticing an unsuspecting user to open a malicious '.MIC' or office file.

Affected

  • Various
  • Twitter
  • Facebook
  • LinkedIn
  • Google+
  • YouTube