Microsoft Knowledge Base Email Alertz

KBAlertz.com: MS08-046: Vulnerabilities in Microsoft Windows Image Color Management could allow remote code execution

Receive Microsoft Knowledge Base articles by E-Mail?

Every night we scan the Microsoft Knowledge Base. If technologies you're interested in are updated, we'll send you an e-mail. You only get one e-mail a day, and only when new articles are added.

Click here to create a
FREE account
Already have an account?
[Click here to Login]

Search KbAlertz

Advanced Search

Webmasters
Put kbAlertz on your website.
[ Click Here for more! ]





ASP.NET 3.5 Web Hosting with Windows 2008 and SQL 2008: Click Here!
Discount ASP.NET Hosting
ASP.NET 2.0 and 3.5
Windows2008 and SQL2008
US and UK Hosting
The ad says 3 - but KBAlertz referrals get
** SIX MONTHS FREE **


Bug Tracking Software
For bug tracking software or defect tracking software or issue tracking software, visit Axosoft.


Community Site



We Send hundreds of thousands of emails using ASP.NET Email



Expert Web Design & Graphic Design
Design44.com

ASP.NET 3.5 Web Hosting with Windows 2008 and SQL 2008: Click Here!
Discount ASP.NET Hosting
ASP.NET 2.0 and 3.5
Windows2008 and SQL2008
US and UK Hosting
The ad says 3 - but KBAlertz referrals get
** SIX MONTHS FREE **




Mentioned In








Microsoft Knowledge Base Article

This article contents is Microsoft Copyrighted material.
©2005-©2007 Microsoft Corporation. All rights reserved. Terms of Use | Trademarks




Article ID: 952954 - Last Review: August 12, 2008 - Revision: 1.0

MS08-046: Vulnerabilities in Microsoft Windows Image Color Management could allow remote code execution

On This Page

INTRODUCTION

Microsoft has released security bulletin MS08-046. To view the complete security bulletin, visit one of the following Microsoft Web sites:

How to obtain help and support for this security update

For home users, no-charge support is available by calling 1-866-PCSAFETY in the United States and Canada or by contacting your local Microsoft subsidiary. For more information about how to contact your local Microsoft subsidiary for support issues with security updates, visit the Microsoft International Support Web site:
http://support.microsoft.com/common/international.aspx?rdpath=4 (http://support.microsoft.com/common/international.aspx?rdpath=4)
North American customers can also obtain instant access to unlimited no-charge e-mail support or to unlimited individual chat support by visiting the following Microsoft Web site:
http://support.microsoft.com/oas/default.aspx?&prid=7552 (http://support.microsoft.com/oas/default.aspx?&prid=7552)
For enterprise customers, support for security updates is available through your usual support contacts.

File information

The English (United States) version of this security update has the file attributes (or later file attributes) that are listed in the following table. The dates and times for these files are listed in Coordinated Universal Time (UTC). When you view the file information, it is converted to local time. To find the difference between UTC and local time, use the Time Zone tab in the Date and Time item in Control Panel.

For all supported editions of Windows 2000

Collapse this tableExpand this table
File nameFile versionFile sizeDateTimePlatform
Mscms.dll5.0.2195.716269,90425-Jun-200822:21x86

Windows XP and Windows Server 2003 file information notes

  • The files that apply to a specific milestone (RTM, SPn) and service branch (QFE, GDR) are noted in the SP requirement and Service branch columns.
  • GDR service branches contain only fixes that are broadly released to address widespread, critical issues. QFE service branches contain hotfixes in addition to broadly released fixes.
  • In addition to the files that are listed in these tables, this software update also installs an associated security catalog file (Microsoft Knowledge Base article number.cat) that is signed by using a Microsoft digital signature.
For all supported 32-bit editions of Windows XP
Collapse this tableExpand this table
File nameFile versionFile sizeDateTimePlatformSP requirementService branch
Mscms.dll5.1.2600.339674,24024-Jun-200816:23x86SP2SP2GDR
Mscms.dll5.1.2600.339674,24024-Jun-200816:28x86SP2SP2QFE
Mscms.dll5.1.2600.562774,24024-Jun-200816:43x86SP3SP3GDR
Mscms.dll5.1.2600.562774,24024-Jun-200816:53x86SP3SP3QFE
For all supported x64-based editions of Windows XP and all supported x64-based editions of Windows Server 2003
Collapse this tableExpand this table
File nameFile versionFile sizeDateTimePlatformSP requirementService branch
Mscms.dll5.2.3790.3163154,11226-Jun-200801:18x64SP1SP1GDR
Wmscms.dll5.2.3790.316375,26426-Jun-200801:18x86SP1SP1GDR\WOW
Mscms.dll5.2.3790.3163154,11226-Jun-200801:18x64SP1SP1QFE
Wmscms.dll5.2.3790.316375,26426-Jun-200801:18x86SP1SP1QFE\WOW
Mscms.dll5.2.3790.4320174,59226-Jun-200801:29x64SP2SP2GDR
Wmscms.dll5.2.3790.432077,82426-Jun-200801:29x86SP2SP2GDR\WOW
Mscms.dll5.2.3790.4320174,59226-Jun-200801:18x64SP2SP2QFE
Wmscms.dll5.2.3790.432077,82426-Jun-200801:18x86SP2SP2QFE\WOW
For all supported 32-bit editions of Windows Server 2003
Collapse this tableExpand this table
File nameFile versionFile sizeDateTimePlatformSP requirementService branch
Mscms.dll5.2.3790.316375,26425-Jun-200814:24x86SP1SP1GDR
Mscms.dll5.2.3790.316375,26425-Jun-200814:30x86SP1SP1QFE
Mscms.dll5.2.3790.432077,82425-Jun-200813:53x86SP2SP2GDR
Mscms.dll5.2.3790.432077,82425-Jun-200814:43x86SP2SP2QFE
For all supported Itanium-based editions of Windows Server 2003
Collapse this tableExpand this table
File nameFile versionFile sizeDateTimePlatformSP requirementService branch
Mscms.dll5.2.3790.3163228,86426-Jun-200801:17IA-64SP1SP1GDR
Wmscms.dll5.2.3790.316375,26426-Jun-200801:17x86SP1SP1GDR\WOW
Mscms.dll5.2.3790.3163228,86426-Jun-200801:17IA-64SP1SP1QFE
Wmscms.dll5.2.3790.316375,26426-Jun-200801:17x86SP1SP1QFE\WOW
Mscms.dll5.2.3790.4320220,67226-Jun-200801:18IA-64SP2SP2GDR
Wmscms.dll5.2.3790.432077,82426-Jun-200801:19x86SP2SP2GDR\WOW
Mscms.dll5.2.3790.4320220,67226-Jun-200801:17IA-64SP2SP2QFE
Wmscms.dll5.2.3790.432077,82426-Jun-200801:17x86SP2SP2QFE\WOW

APPLIES TO
  • Microsoft Windows Server 2003 R2 Standard Edition (32-bit x86)
  • Microsoft Windows Server 2003 R2 Standard x64 Edition
  • Microsoft Windows Server 2003, Datacenter x64 Edition
    • Microsoft Windows Server 2003, Standard Edition
    • Microsoft Windows Server 2003, Enterprise Edition
    • Microsoft Windows Server 2003, Datacenter Edition (32-bit x86)
    • Microsoft Windows Server 2003, Web Edition
    • Microsoft Windows Server 2003, Enterprise Edition for Itanium-based Systems
    • Microsoft Windows Server 2003, Datacenter Edition for Itanium-based Systems
    • Microsoft Windows Small Business Server 2003 Standard Edition
  • Microsoft Windows Server 2003 Service Pack 2, when used with:
    • Microsoft Windows Server 2003, Standard Edition
    • Microsoft Windows Server 2003, Enterprise Edition
    • Microsoft Windows Server 2003, Datacenter Edition (32-bit x86)
    • Microsoft Windows Server 2003, Web Edition
    • Microsoft Windows Server 2003, Enterprise Edition for Itanium-based Systems
    • Microsoft Windows Server 2003, Datacenter Edition for Itanium-based Systems
    • Microsoft Windows Server 2003, Standard x64 Edition
    • Microsoft Windows Server 2003, Enterprise x64 Edition
    • Microsoft Windows Server 2003, Datacenter x64 Edition
    • Microsoft Windows Server 2003 R2 Standard Edition (32-bit x86)
    • Microsoft Windows Server 2003 R2 Enterprise Edition (32-Bit x86)
    • Microsoft Windows Server 2003 R2 Datacenter Edition (32-Bit x86)
    • Microsoft Windows Server 2003 R2 Standard x64 Edition
    • Microsoft Windows Server 2003 R2 Enterprise x64 Edition
    • Microsoft Windows Server 2003 R2 Datacenter x64 Edition
    • Microsoft Windows XP Professional x64 Edition
  • Microsoft Windows XP Media Center Edition 2005
  • Microsoft Windows XP Service Pack 3, when used with:
    • Microsoft Windows XP Professional
    • Microsoft Windows XP Home Edition
    • Microsoft Windows XP Professional
    • Microsoft Windows XP Home Edition
  • Microsoft Windows 2000 Service Pack 4, when used with:
    • Microsoft Windows 2000 Datacenter Server
    • Microsoft Windows 2000 Advanced Server
    • Microsoft Windows 2000 Server
    • Microsoft Windows 2000 Professional Edition
  • Microsoft Small Business Server 2000 Standard Edition
Keywords: 
kbpubtypekc kbfix kbbug kbsecvulnerability kbsecbulletin kbsecurity kbqfe kbexpertisebeginner KB952954
       

Community Feedback System

Very often, it takes hours to solve a problem. Very often, you've looked high and low, and have tried a lot of solutions. When you finally found it, chances are, it was because someone else helped you. Here's your chance to give back. Use our community feedback tool to let others know what worked for you and what didn't.

Please also understand that the community feedback system is not warranted to be correct, it's simply a system that we've built to let people try and help each other. If something in a feedback response doesn't make sense to you, or you're not comfortable making changes that the feedback talks about (like registry edits), please consult a professional.

Thank you for using kbAlertz.com Feedback System.

-- Scott Cate

Be the first to leave feedback, to help others about this knowledge base article.

(Optional) Name

(Optional) Public URL Or Email

Comments
No HTML -- Text Only Please