RULE(RULE ID:705479)

Rule General Information
Release Date: 2013-03-05
Rule Name: Microsoft Windows Shell Graphics Thumbnail Image Integer Overflow -2 (CVE-2010-3970)
Severity:
CVE ID:
CNNVD ID:
Rule Protection Details
Description: A stack buffer overflow vulnerability exists in Microsoft's Graphics Rendering Engine. The vulnerability is due to insufficient input validation when processing the biClrUsed value of a bitmap thumbnail.
Impact: Remote code execution
Affected OS: Windows
Reference: CVE-2010-3970
MicrosoftSecurityBulletin:MS11-006
Solutions
Update vendor's patch.