Microsoft XML Core Services Integer Truncation Memory Corruption (MS13-002; CVE-2013-0006)
| Check Point Reference: | CPAI-2013-1313 | |
| Date Published: | ||
| Severity: | ||
| Source: | Microsoft Security Bulletin MS13-002 | |
| Industry Reference(s): | CVE-2013-0006 |
|
| Protection Provided by: |
Security Gateway
|
|
|
Who is Vulnerable? Microsoft XML Core Services 3.0 Microsoft XML Core Services 4.0 Microsoft XML Core Services 5.0 Microsoft XML Core Services 6.0 |
||
| Vulnerability Description A memory corruption vulnerability exists in Microsoft XML Core Services. The vulnerability is due to an integertruncation error while Microsoft XML Core Services parses XML content. Remote attackers could exploit this vulnerability by persuading a target user to visit a specially crafted website. Successful exploitation could allow arbitrary code execution in the context of current user. |
||
|
Update/Patch Available Apply patches from: MS13-002 |
Protection Overview
This protection will detect and block attempts to exploit this vulnerability.
In order for the protection to be activated, update your product to the latest update. For information on how to update , go to SBP-2006-05, Protection tab and select the version of your choice.
To configure the defense, select your product from the list below and follow the related protection steps.