Update Protection against Microsoft URL Parsing Cross Domain Information Disclosure Vulnerability (MS08-048)
| Check Point Reference: | CPAI-2008-126 | |
| Date Published: | ||
| Severity: | ||
| Last Updated: | ||
| Source: | Microsoft Security Bulletin MS08-048 | |
| Industry Reference(s): | CVE-2008-1448 | |
| Protection Provided by: |
VPN-1
|
|
| Who is Vulnerable? Microsoft Outlook Express 5.5: Windows 2000 SP4
Microsoft Outlook Express 6:
Windows Mail: | ||
| Vulnerability Description An information disclosure vulnerability has been reported in Outlook Express and Windows Mail due to a flaw in the MHTML protocol. MHTML (MIME Encapsulation of Aggregate HTML) is an Internet standard that defines the MIME structure that is used to wrap HTML content. A remote attacker might exploit this vulnerability to read data from another Internet Explorer domain. |
||
|
Update/Patch Available Apply patches: Microsoft Security Bulletin MS08-048 |
|
|
Vulnerability Details The vulnerability is caused when the Windows MHTML protocol handler is parsing a URL and incorrectly interprets HTTP headers when returning MHTML content. To trigger this issue, an attacker may create a malicious web page that will exploit this vulnerability. Successful exploitation could allow information disclosure. |
Protection Overview
By enabling this protection, SmartDefense will detect and block attempts to exploit this vulnerability.
In order for the protection to be activated, update your VPN-1 product to the latest SmartDefense update. For information on how to update SmartDefense, go to SBP-2006-05, Protection tab and select the version of your choice.
To configure the defense, select your product from the list below and follow the related protection steps.