ZeroHour
Kaspersky Securelistpublished ()ingested @Securelist

More WMF vulnerabilties detected

highExploit / PoCimportance 57
Full article220 words · extracted from securelist.com · click to collapse

Incidents

Incidents

10 Jan 2006

minute read

Yesterday information about another Windows’ WMF handling vulnerability was published.

This time two different functions are exploited, “ExtCreateRegion” and “ExtEscape”. This is in contrast to the “SetAbortProc” function which has been exploited very actively by the vulnerability we have recently blogged about.

This doesn’t look too good for Microsoft, with a new vulnerability in the same file that a patch was just released for.

However it’s not as bad as it seems, as this time it’s not possible to execute arbitrary code. The exploitation is limited to Denial of Service.

In other words, the program which is trying to view the malformed WMF file will crash and that’s it.

Latest Webinars
Reports

Kaspersky researchers have discovered new Mirage Kitten attacks using previously undocumented malware families: NodeRabbit in Node.js and PollCat in JavaScript.

Our experts discovered a new CoolClient backdoor variant with a kernel-mode rootkit driver that hides malicious processes, files, and network connections from security tools and threat analysts.

Kaspersky experts break down a new Armored Likho campaign that poses as a fundraising efforts and delivers a new Still Toolkit aimed at stealing Telegram data and eavesdropping on victims.

Kaspersky researchers reveal previously undocumented malware attributed to Mirage Kitten (UNC1549, Smoke Sandstorm, Nimbus Manticore): NightLedger backdoor, ArcBridge, and BridgeHead tunneling tools.

Text extracted automatically; images, tables and formatting may be missing. Original: https://securelist.com/more-wmf-vulnerabilties-detected/30114/