Advisory Details

April 11th, 2006

Microsoft Windows Address Book (WAB) File Format Parsing Vulnerability

ZDI-06-007
ZDI-CAN-002

CVE ID CVE-2006-0014
CVSS SCORE
AFFECTED VENDORS Microsoft
AFFECTED PRODUCTS File Format Vulnerability
TREND MICRO CUSTOMER PROTECTION Trend Micro TippingPoint IPS customers are protected against this vulnerability by Digital Vaccine protection filter ID ['3794', '4291', '4293']. For further product information on the TippingPoint IPS: http://www.tippingpoint.com
VULNERABILITY DETAILS

This vulnerability allows attackers to execute arbitrary code on vulnerable installations of the Microsoft Windows operating system. User interaction is required to exploit this vulnerability.

The specific flaw exists during the parsing of malformed Windows Address Book (.WAB) files. Modification of the length value of certain Unicode strings within this file format results in an exploitable heap corruption.

ADDITIONAL DETAILS Microsoft has issued an update to correct this vulnerability. More details can be found at:
http://www.microsoft.com/technet/security/Bulletin/MS06-016.mspx
DISCLOSURE TIMELINE
  • 2005-09-20 - Vulnerability reported to vendor
  • 2006-04-11 - Coordinated public release of advisory
CREDIT Stuart Pearson - Computer Terrorism (UK)
BACK TO ADVISORIES