MS.Windows.itss.DLL.CHM.File.Handling.Heap.Overflow

description-logoDescription

This indicates an attack attempt against a heap-based buffer-overflow vulnerability in Microsoft Infotech Storage System Library (itss.dll).
An attack may exploit this vulnerability by enticing the potential victims to open a crafted ".chm" file.

affected-products-logoAffected Products

Microsoft Corporation: Windows 98
Microsoft Corporation: Windows 98 Second Edition
Microsoft Corporation: Windows Me
Microsoft Corporation: Windows XP
Microsoft Corporation: Windows 2000 Any version
Microsoft Corporation: Windows 2003 Any version
Microsoft Corporation: Windows NT 4.0

Impact logoImpact

System Compromise: Remote attackers can gain control of vulnerable systems.

recomended-action-logoRecommended Actions

Currently we are not aware of any vendor-supplied patches for this issue.

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)

Version Updates

Date Version Detail
2020-10-27 16.950 Name:MS.
Itss.
Dll.
CHM.
File.
Handling.
Heap.
Overflow:MS.
Windows.
itss.
DLL.
CHM.
File.
Handling.
Heap.
Overflow