MS.GDIPlus.TIFF.Code.Execution
- 特征库ID:
17816
- 漏洞级别:
危急
- CVE ID:
2009-2502
- 建议的动作:
全部屏蔽
- 受影响的系统:
Windows
- 协议:
TCP, HTTP, SMTP
攻击漏洞描述
远程攻击者利用微软操作系统gdiplus.dll的TIFF文件格式解析漏洞进行攻击,成功的攻击可以导致执行任意代码
影响范围
gdiplus.dll version 5.1.3102.2180
Other versions may also be affected
解决办法
采用最新的应用补丁
http://www.microsoft.com/technet/security/Bulletin/ms09-062.mspx