Vulnerability

(MS13-070) Vulnerability in OLE Could Allow Remote Code Execution (2876217)

Publish date: September 18, 2013

CVE-2013-3863

SEVERITY

CRITICAL

//  ADVISORY DATE

  


DESCRIPTION

This bulletin addresses a vulnerability in the OLE component of several Microsoft Windows operating systems. Attackers lure users to open a specially crafted OLE object to exploit this vulnerability. Once successfully exploited, attackers gain the same user rights as the logged on user.

SOLUTION

AFFECTED SOFTWARE AND VERSION

  • Windows XP Service Pack 3
  • Windows XP Professional x64 Edition Service Pack 2
  • Windows Server 2003 Service Pack 2
  • Windows Server 2003 x64 Edition Service Pack 2
  • Windows Server 2003 with SP2 for Itanium-based Systems

Featured Stories

Connect with us on