Msvcrt.dll Buffer Overflow Vulnerability (CVE-2012-0150)

  Severity: CRITICAL
  CVE Identifier: CVE-2012-0150,MS12-013
  Advisory Date: JUL 21, 2015

  DESCRIPTION

Buffer overflow in msvcrt.dll in Microsoft Windows Vista SP2, Windows Server 2008 SP2, R2, and R2 SP1, and Windows 7 Gold and SP1 allows remote attackers to execute arbitrary code via a crafted media file, aka "Msvcrt.dll Buffer Overflow Vulnerability."

  TREND MICRO PROTECTION INFORMATION

Apply associated Trend Micro DPI Rules.

  SOLUTION

  Trend Micro Deep Security DPI Rule Number: 1004928
  Trend Micro Deep Security DPI Rule Name: 1004928 - Msvcrt.dll Buffer Overflow Vulnerability (CVE-2012-0150)

  AFFECTED SOFTWARE AND VERSION

  • microsoft windows_7
  • microsoft windows_server_2008
  • microsoft windows_server_2008 r2
  • microsoft windows_vista