takođe i nova ranjivost u visual c++ 2005 , 2008 , 2010 , redistributable
http://www.microsoft.com/technet/security/bulletin/MS11-025.mspx
Citat:
Executive Summary
This security update resolves a publicly disclosed vulnerability in certain applications built using the Microsoft Foundation Class (MFC) Library. The vulnerability could allow remote code execution if a user opens a legitimate file associated with such an affected application, and the file is located in the same network folder as a specially crafted library file. For an attack to be successful, a user must visit an untrusted remote file system location or WebDAV share and open a document from this location that is then loaded by the affected application.
|