MS.GDIPlus.Multiple.Run.Length.Zero

NameMS.GDIPlus.Multiple.Run.Length.Zero.Code.Execution
Last Updated DateDec 15, 2009
Release DateOct 14, 2009
SeverityCritical
ImpactSystem compromise.
DescriptionThis indicates a possible attempt to exploit a buffer overwrite vulnerability in gdiplus.dll of Microsoft Windows operating system.
Affected Productsgdiplus.dll version 5.1.3102.5512
Recommended ActionsYou may refer to Microsoft advisory for patches or updates:
http://www.microsoft.com/technet/security/Bulletin/ms09-062.mspx
Common Vulnerabilities and Exposures (CVE)http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-2503
Microsoft Bulletin IDMS09-062   http://www.microsoft.com/technet/security/Bulletin/ms09-062.mspx
Reference: VID-17818