Update Protection against Microsoft Windows Movie Maker Memory Corruption Vulnerability (MS10-050)
| Check Point Reference: | CPAI-2010-242 | |
| Date Published: | ||
| Severity: | ||
| Last Updated: | ||
| Source: | Microsoft Security Bulletin MS10-050 | |
| Industry Reference(s): | CVE-2010-2564 | |
| Protection Provided by: |
Security Gateway
|
|
| Who is Vulnerable? Windows Vista Service Pack 1, Service Pack 2 Windows Vista x64 Edition Service Pack 1, Service Pack 2 Windows Vista x64 Edition Service Pack 1, Service Pack 2 | ||
| Vulnerability Description A remote code execution vulnerability exists in Windows Movie Maker, an application which allows users to create, edit and add special effects to home movies. To trigger the vulnerability, a malicious user would need to send a specially crafted Movie Maker file and convince the user to open it. An attacker who successfully exploited this vulnerability could take complete control of an affected system. Note that Windows Movie Maker on Windows 7 is also affected. |
||
|
Update/Patch Available Apply patches: Microsoft Security Bulletin MS10-050 |
|
|
Vulnerability Details The vulnerability exists in the way that Windows Movie Maker parses project file formats. Exploitation of this vulnerability requires that a user open a specially crafted Movie Maker project file with an affected version of Windows Movie Maker. |
Protection Overview
This protection will detect and block transfer of malformed .MSWMM files over HTTP.
In order for the protection to be activated, update your Security Gateway/VPN-1 product to the latest IPS/SmartDefense update. For information on how to update IPS/SmartDefense, go to SBP-2006-05, Protection tab and select the version of your choice.
To configure the defense, select your product from the list below and follow the related protection steps.