Microsoft Windows Vector Markup Language Code Execution Vulnerability (MS07-004)
A vulnerability has been identified in Microsoft Windows, which could be exploited by remote attackers to take complete control of an affected system. This issue is due to a memory corruption error in the Vector Markup Language (VML) implementation, which could be exploited by attackers to execute arbitrary commands by tricking a user into visiting a malicious Web page.

Affected Products

Microsoft Internet Explorer 5.01 Service Pack 4 on Microsoft Windows 2000 Service Pack 4
Microsoft Internet Explorer 6 Service Pack 1 on Microsoft Windows 2000 Service Pack 4
Microsoft Internet Explorer 7 on Microsoft Windows XP Service Pack 2
Microsoft Internet Explorer 7 on Microsoft Windows XP Professional x64 Edition
Microsoft Internet Explorer 7 on Microsoft Windows Server 2003
Microsoft Internet Explorer 7 on Microsoft Windows Server 2003 Service Pack 1
Microsoft Internet Explorer 7 on Microsoft Windows Server 2003 (Itanium)
Microsoft Internet Explorer 7 on Microsoft Windows Server 2003 SP1 (Itanium)
Microsoft Internet Explorer 7 on Microsoft Windows Server 2003 x64 Edition

Solution

Apply patches :
http://www.microsoft.com/technet/security/Bulletin/MS07-004.mspx
더보기

댓글,