Thread-topic: [SA24136] Microsoft Windows HTML Help ActiveX Control Vulnerability
>
> ----------------------------------------------------------------------
>
> TITLE:
> Microsoft Windows HTML Help ActiveX Control Vulnerability
>
> SECUNIA ADVISORY ID:
> SA24136
>
> VERIFY ADVISORY:
>
>
> CRITICAL:
> Highly critical
>
> IMPACT:
> System access
>
> WHERE:
> From remote
>
> OPERATING SYSTEM:
> Microsoft Windows 2000 Advanced Server
>
> Microsoft Windows 2000 Datacenter Server
>
> Microsoft Windows 2000 Professional
>
> Microsoft Windows 2000 Server
>
> Microsoft Windows Server 2003 Datacenter Edition
>
> Microsoft Windows Server 2003 Enterprise Edition
>
> Microsoft Windows Server 2003 Standard Edition
>
> Microsoft Windows Server 2003 Web Edition
>
> Microsoft Windows XP Home Edition
>
> Microsoft Windows XP Professional
>
>
> DESCRIPTION:
> A vulnerability has been reported in Microsoft Windows, which can be
> exploited by malicious people to compromise a user's system.
>
> The vulnerability is caused due to certain parameters not being
> properly initialised by the HTML ActiveX control (Hhctrl.ocx) when
> handling certain methods.
>
> Successful exploitation allows execution of arbitrary code when a
> user e.g. visits a malicious website.
>
> NOTE: Other unspecified issues discovered internally by Microsoft
> have also been reported.
>
> SOLUTION:
> Apply patches.
>
> Windows 2000 SP4:
>
> c07-88ff-4ae4-a82a-ce2045c6c4fe
>
> Windows XP SP2:
>
> 273-d7da-4a60-ba80-c95c8036d670
>
> Windows XP Professional x64 Edition:
>
> daa-cf0f-4898-8675-911428e7fd74
>
> Windows Server 2003 (optionally with SP1):
>
> 607-b6ec-41e2-aac0-34387f1211a7
>
> Windows Server 2003 for Itanium-based systems (optionally with SP1):
>
> 8e8-5fbe-4a32-945c-440a4b684b0f
>
> Windows Server 2003 x64 Edition:
>
> 245-6c89-43db-8d28-12988791c395
>
> PROVIDED AND/OR DISCOVERED BY:
> The vendor credits HD Moore, BreakingPoint Systems.
>
> ORIGINAL ADVISORY:
> MS07-008 (KB928843):
>
>