Re: MS04-028 & vendor copies of gdiplus.dll

From: Lance (lltbhill_at_link_earth.net)
Date: 09/28/04


Date: Mon, 27 Sep 2004 20:14:12 -0700

Try this little scanner from ISC:
<http://isc.sans.org/gdiscan.php>

It will scan your hard disk and let you know which ones are vulnerable.

Lance
*****

BeamGuy thought carefully and wrote on 9/27/2004 8:05 PM:

> My windows system has two different copies of gdiplus.dll installed
> in four different vendor software directories. My versions are...
> 5.1.3097.0
> 5.1.3092.0
>
> I read somewhere that some vendor software has distributed microsoft
> dll's that are vulnerable to the recently released exploit.
>
> Are these vulnerable? I looked on the microsoft website but the answer
> is not readily availiable.
>
> Thanks
>
>