���J���F2007/04/01 11:57�@�ŏI�X�V���F2007/04/20 4:03

TRTA07-089A
Microsoft Windows �A�j���[�V�����J�[�\�� ANI �w�b�_�ɂ�����X�^�b�N�o�b�t�@�I�[�o�[�t���[�̐Ǝ㐫

�T�v


Microsoft Windows �ɂ́A�A�j���[�V�����J�[�\���t�@�C�� (.ani) �̏����ɃX�^�b�N�o�b�t�@�I�[�o�[�t���[�̐Ǝ㐫�����݂��܂��B

�e�����󂯂�V�X�e��
�@- Microsoft Windows 2000 Service Pack 4
�@- Microsoft Windows XP Service Pack 2
�@- Microsoft Windows XP 64-Bit Edition Version 2003 (Itanium)
�@- Microsoft Windows XP Professional x64 Edition
�@- Microsoft Windows Server 2003
�@- Microsoft Windows Server 2003 for Itanium-based Systems
�@- Microsoft Windows Server 2003 Service Pack 1
�@- Microsoft Windows Server 2003 with SP1 for Itanium-based Systems
�@- Microsoft Windows Server 2003 x64 Edition
�@- Microsoft Windows Vista

�@�@�ڂ����́A�x���_�̒񋟂���������m�F���������B

���n��C�x���g


���� (JST)���e
2007-04-18 03:10 SANS Internet Storm Center
New variant of ANI (MS07-017) exploit
2007-04-06 12:23 �V�}���e�b�N
ThreatCON (2) => (1)
2007-04-06 00:00 �C���^�[�l�b�g�Z�L�����e�B�V�X�e���Y
AlertCon (2) => (1)
2007-04-04 16:51 IPA/ISEC
20070404-ms07-017: Windows �̃A�j���[�V�����J�[�\���̐Ǝ㐫(MS07-017)�ɂ‚���
2007-04-04 09:42 JPCERT/CC
JPCERT-AT-2007-0008: Windows �A�j���[�V���� �J�[�\�������̖��C���̐Ǝ㐫�Ɋւ��钍�ӊ��N
2007-04-04 07:30 �}�C�N���\�t�g
�}�C�N���\�t�g �Z�L�����e�B �A�h�o�C�U�� (935423): Windows �A�j���[�V���� �J�[�\�������̐Ǝ㐫
�A�j���[�V���� �J�[�\�������̐Ǝ㐫(CVE-2007-0038)
�}�C�N���\�t�g�͐Ǝ㐫�ɂ‚��Č��J���ꂽ�񍐂̒������������A���̖��ɑΏ����邽�߂�MS07-017�����J�����B
2007-04-04 06:37 @police
�}�C�N���\�t�g�Ђ̃Z�L�����e�B�C���v���O�����ɂ‚���(MS07-017)(4/4)
2007-04-04 04:48 US-CERT
TA07-093A: Microsoft Update for Windows Animated Cursor Vulnerability
US-CERT ���[�����O���X�g�o�R�� Technical Cyber Security Alert ��M
2007-04-04 04:00 US-CERT
Microsoft Releases Security Bulletin to Patch Animated Cursor Vulnerability
US-CERT Current Activity�Ƃ���Microsoft Security Bulletin MS07-017�̌��J���
2007-04-04 02:58 �}�C�N���\�t�g
�}�C�N���\�t�g �Z�L�����e�B��� MS07-017: GDI �̐Ǝ㐫�ɂ��A�����[�g�ŃR�[�h�����s����� (925902) (MS07-017)
�Z�L�����e�B�������J
2007-04-04 SANS Internet Storm Center
INFOCon (2) => (1)
2007-04-03 02:06 �C���^�[�l�b�g�Z�L�����e�B�V�X�e���Y
AlertCon (1) => (2)
2007-04-03 Bugtraq
MS Windows Animated Cursor (.ANI) Universal Exploit Generator
�Ǝ㐫(CVE-2007-0038) ���؃R�[�h�Ɋւ����
#Cid: Uniwersal_Exp_Gen-ie_ani.tar.gz
#Cid: 04032007-ie_ani.tar.gz
2007-04-01 14:20 Microsoft Security Response Center Blog
Latest on security update for Microsoft Security Advisory 935423
2007-04-01 06:15 SANS Internet Storm Center
Chinese Internet Security Response Team Reports ANI Worm
2007-04-01 �V�}���e�b�N
W32.Fubalca
�Ǝ㐫(CVE-2007-0038)�̈��p
2007-04-01 Bugtraq
MS Windows Animated Cursor (.ANI) Remote Exploit (eeye patch bypass)
�Ǝ㐫(CVE-2007-0038) ���؃R�[�h�Ɋւ����
#Cid: 04012007-exp.zip
#Tested: Windows Vista Enterprise Version 6.0 (Build 6000)
#Tested: Windows Vista Ultimate Version 6.0 (Build 6000)
#Tested: Windows XP SP2
2007-04-01 Bugtraq
MS Windows XP Animated Cursor (.ANI) Remote Overflow Exploit 2
�Ǝ㐫(CVE-2007-0038) ���؃R�[�h�Ɋւ����
#Cid: 04012007-ani.zip
#Tested: Windows XP SP2 + IE 6 SP2
2007-04-01 Bugtraq
MS Windows XP/Vista Animated Cursor (.ANI) Remote Overflow Exploit
�Ǝ㐫(CVE-2007-0038) ���؃R�[�h�Ɋւ����
#Cid: 04012007-Animated_Cursor_Exploit.zip
#Tested: Windows Vista Enterprise Version 6.0 (Build 6000)
#Tested: Windows Vista Ultimate Version 6.0 (Build 6000)
#Tested: Windows XP SP2
2007-03-31 23:31 SANS Internet Storm Center
ANI exploit code drives INFOCon to Yellow
INFOCon (1) => (2)
2007-03-31 19:45 Chinese Internet Security Response Team
New worm use the .ani zero day vulnerability
2007-03-31 14:19 Bugtraq
Windows .ANI Stack Overflow Exploit
�Ǝ㐫(CVE-2007-1765) ���؃R�[�h�Ɋւ����
��: CVE-2007-1765 �� CVE-2007-0038 �͏d�����Ă��邩������Ȃ��BCVE-2007-0038 �𗘗p����̂��D�܂����B
#Cid: 23194.c
2007-03-31 03:47 US-CERT
TA07-089A: Microsoft Windows ANI header stack buffer overflow
US-CERT ���[�����O���X�g�o�R�� Technical Cyber Security Alert ��M
2007-03-31 SANS Internet Storm Center
ANI: It Gets Better
2007-03-31 �C���^�[�l�b�g�Z�L�����e�B�V�X�e���Y
Microsoft Windows �A�j���[�V���� �J�[�\�� (ANI) �ɂ��R�[�h���s
2007-03-30 14:53 Determina
Vulnerability In Windows Animated Cursor Handling
2007-03-30 12:14 JPCERT/CC
JPCERT-AT-2007-0008: Windows �A�j���[�V���� �J�[�\�������̖��C���̐Ǝ㐫�Ɋւ��钍�ӊ��N
2007-03-30 09:26 @police
�}�C�N���\�t�g�Ђ� Microsoft Windows �A�j���[�V���� �J�[�\�������̐Ǝ㐫�ɂ‚���(3/30)
2007-03-30 04:00 �V�}���e�b�N
ThreatCON (1) => (2)
2007-03-30 02:38 �}�C�N���\�t�g
�}�C�N���\�t�g �Z�L�����e�B �A�h�o�C�U�� (935423): Windows �A�j���[�V���� �J�[�\�������̐Ǝ㐫
�A�j���[�V���� �J�[�\�������̐Ǝ㐫(CVE-2007-0038)
�A�h�o�C�U�������J
2007-03-30 SANS Internet Storm Center
Detecting and filtering out windows animated cursor exploitation attempts
2007-03-30 SANS Internet Storm Center
Ani cursor exploits against Microsoft E-mail clients - CVE-2007-0038
2007-03-29 22:00 US-CERT
Active Exploitation of an Unpatched Vulnerability in Microsoft Windows ANI Handling
US-CERT Current Activity�Ƃ��ĐƎ㐫�̑��݂��
2007-03-29 07:44 McAfee
Unpatched Drive-By Exploit Found On The Web
2007-03-28 �}�J�t�B
Exploit-ANIfile.c
�Ǝ㐫(CVE-2007-0038)�̈��p
2007-03-28 �g�����h�}�C�N��
TROJ_ANICMOO.AX
�Ǝ㐫(CVE-2007-0038)�̈��p
2006-12-20 Determina
Windows Animated Cursor Stack Overflow Vulnerability


�Q�l���



  1. Technical Cyber Security Alert TA07-089A
    Microsoft Windows ANI header stack buffer overflow
  2. Vendor Status Note JVNTA07-089A
    Microsoft Windows �A�j���[�V�����J�[�\�� ANI �w�b�_�ɂ�����X�^�b�N�o�b�t�@�I�[�o�[�t���[�̐Ǝ㐫