���J���F2011/01/23 14:26�@�ŏI�X�V���F2011/01/23 14:26

JVNTR-2011-01
�}�C�N���\�t�g Graphics Rendering Engine �̐Ǝ㐫 (CVE-2010-3970, JVNVU#106516)

Tv


Microsoft Windows �� Graphics Rendering Engine �ɂ́A�o�b�t�@�I�[�o�[�t���[�̐Ǝ㐫�����݂��܂��B

�e�����󂯂�V�X�e��
�@- Windows XP Service Pack 3
�@- Windows XP Professional x64 Edition Service Pack 2
�@- Windows Server 2003 Service Pack 2
�@- Windows Server 2003 x64 Edition Service Pack 2
�@- Windows Server 2003 with SP2 for Itanium-based Systems
�@- Windows Vista Service Pack 1 ����� Windows Vista Service Pack 2
�@- Windows Vista x64 Edition Service Pack 1 ����� Windows Vista x64 Edition Service Pack 2
�@- Windows Server 2008 for 32-bit Systems ����� Windows Server 2008 for 32-bit Systems Service Pack 2
�@- Windows Server 2008 for x64-based Systems ����� Windows Server 2008 for x64-based Systems Service Pack 2
�@- Windows Server 2008 for Itanium-based Systems ����� Windows Server 2008 for Itanium-based Systems Service Pack 2

nCxg


���� (JST)���e
2011-01-06 12:20 �}�C�N���\�t�g
�}�C�N���\�t�g �Z�L�����e�B �A�h�o�C�U�� (2490606): Graphics Rendering Engine �̐Ǝ㐫�ɂ��A�����[�g�ŃR�[�h�����s�����
Fix it (shimgvw.dll �̃A�N�Z�X���䃊�X�g�̕ύX) �̒�
2011-01-05 20:48 US-CERT
Microsoft Releases Security Advisory
US-CERT Current Activity
�Z�L�����e�B �A�h�o�C�U�� (2490606) �̌��J���A�i�E���X
2011-01-05 12:16 �}�C�N���\�t�g
�}�C�N���\�t�g �Z�L�����e�B �A�h�o�C�U�� (2490606): Graphics Rendering Engine �̐Ǝ㐫�ɂ��A�����[�g�ŃR�[�h�����s�����
�Z�L�����e�B �A�h�o�C�U�� (2490606) �̌��J
2011-01-04 16:30 Metasploit Project
Microsoft Windows CreateSizedDIBSECTION Stack Buffer Overflow
���؃R�[�h�̌��J
Metasploit Penetration Testing Framework
2011-01-04 SANS Internet Storm Center
Microsoft Advisory: Vulnerability in Graphics Rendering Engine
2010-12-15
A Story about How Hackers' Heart Broken by 0-day
�Ǝ㐫�̕�
Power of Community �ł̍u���uA Story about How Hackers' Heart Broken by 0-day�v


Ql



  1. Japan Vulnerability Note JVNVU#106516
    Microsoft Windows �Ƀo�b�t�@�I�[�o�[�t���[�̐Ǝ㐫