Microsoft KB Archive/918439

= MS06-022: Vulnerability in ART image rendering could allow remote code execution =

Article ID: 918439

Article Last Modified on 12/3/2007

-

APPLIES TO

 Microsoft Windows Server 2003, Standard Edition (32-bit x86) Microsoft Windows Server 2003, Enterprise Edition (32-bit x86) Microsoft Windows Server 2003, Datacenter Edition (32-bit x86) Microsoft Windows Server 2003, Web Edition Microsoft Windows Server 2003, Enterprise Edition for Itanium-based Systems Microsoft Windows Server 2003, Datacenter Edition for Itanium-Based Systems Microsoft Windows Server 2003, Standard x64 Edition Microsoft Windows Server 2003, Enterprise x64 Edition</li> Microsoft Windows Server 2003, Datacenter x64 Edition</li> Microsoft Windows Small Business Server 2003 Premium Edition</li> Microsoft Windows Small Business Server 2003 Standard Edition</li> Microsoft Windows XP for Itanium-based Systems Version 2003</li> Microsoft Windows XP Professional 64-Bit Edition (Itanium)</li> Microsoft Windows XP Professional x64 Edition</li> Microsoft Windows XP Media Center Edition 2005</li> Microsoft Windows XP Tablet PC Edition 2005</li> Microsoft Windows XP Service Pack 2, when used with: <ul> Microsoft Windows XP Professional</li></ul>

<ul> Microsoft Windows XP Home Edition</li></ul> </li> Microsoft Windows XP Service Pack 1, when used with: <ul> Microsoft Windows XP Home Edition</li></ul>

<ul> Microsoft Windows XP Professional</li></ul>

<ul> Microsoft Windows XP Media Center Edition 2002</li></ul>

<ul> Microsoft Windows XP Tablet PC Edition</li></ul> </li> <li>Microsoft Small Business Server 2000 Standard Edition</li> <li>Microsoft Windows 2000 Professional Edition</li> <li>Microsoft Windows 2000 Service Pack 4</li> <li>Microsoft Windows 2000 Advanced Server</li> <li>Microsoft Windows 2000 Datacenter Server</li> <li>Microsoft Windows Millennium Edition</li> <li>Microsoft Windows 98 Second Edition</li> <li>Microsoft Internet Explorer 6.0 Service Pack 1</li> <li>Microsoft Internet Explorer 5.01 Service Pack 4</li></ul>

-

<div class="notice_section">

<div class="summary_section">

SUMMARY
Microsoft has released security bulletin MS06-022. This security bulletin contains all the relevant information about the security update. This information includes file manifest information and deployment options. To view the complete security bulletin, visit one of the following Microsoft Web sites, as appropriate for your situation: <ul> <li>Home users:

http://www.microsoft.com/athome/security/update/bulletins/200606.mspx

</li> <li>IT professionals:

http://www.microsoft.com/technet/security/bulletin/ms06-022.mspx

</li></ul>

Note The updated binaries that are included in MS06-022 are for the AOL client that is included with various Microsoft operating systems and with various versions of Microsoft Internet Explorer. No issues or functionality changes have been identified with these updated binaries. The third-party products that this article discusses are manufactured by companies that are independent of Microsoft. Microsoft makes no warranty, implied or otherwise, regarding the performance or reliability of these products.

Additional query words: update security_patch security_update security bug flaw vulnerability malicious attacker exploit registry unauthenticated buffer overrun overflow specially-formed scope specially-crafted denial of service DoS TSE WinNT Win2000

Keywords: kbwinserv2003sp2fix kbqfe kbsecurity kbsecbulletin kbsecvulnerability kbwinxppresp2fix kbbug kbfix kbwinserv2003presp1fix kbwin2000presp5fix kbwinnt400presp7fix kbpubtypekc KB918439

-

[mailto:TECHNET@MICROSOFT.COM Send feedback to Microsoft]

© Microsoft Corporation. All rights reserved.