Security Advisory

CVE-2004-0200

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2004-09-17 04:00:00
Last updated 2024-08-08 00:10:03
Assigner mitre
State PUBLISHED

Description

Buffer overflow in the JPEG (JPG) parsing engine in the Microsoft Graphic Device Interface Plus (GDI+) component, GDIPlus.dll, allows remote attackers to execute arbitrary code via a JPEG image with a small JPEG COM field length that is normalized to a large integer length before a memory copy operation.