Description: Two vulnerabilities have been reported in Microsoft Windows, which can be exploited by malicious people to compromise a user's system
1) An integer overflow error in the Vector Markup Language (VML) implementation when processing recolorinfo sections can be exploited to cause a heap-based buffer overflow via e.g. a specially crafted web page or HTML e-mail.
Successful exploitation allows execution of arbitrary code.
NOTE: According to Microsoft, this vulnerability is being actively exploited.
2) A signedness error in the Vector Markup Language (VML) implementation when handling shape types can be exploited to reference user-controlled memory and cause a memory corruption, which may allow execution of arbitrary code.
Do you have this product installed on your home computer? Scan using the free Personal Software Inspector. Check if a vulnerable version is installed on computers in your corporate network, using the Network Software Inspector.
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.
Ideas, suggestions, and other feedback are most welcome.