=====================================================================
                                  CERT-Renater

                       Note d'Information No. 2004/VULN535
_____________________________________________________________________

DATE                      : 16/12/2004

HARDWARE PLATFORM(S)      : /

OPERATING SYSTEM(S)       : Windows.

======================================================================

TECHNICAL DETAILS

MS04-041
Title:  Vulnerability in WordPad Could Allow Code Execution (885836) Affected Software:
  - Microsoft Windows NT Server 4.0 Service Pack 6a
  - Microsoft Windows NT Server 4.0 Terminal Server Edition Service Pack 6
  - Microsoft Windows 2000 Service Pack 3 and Microsoft Windows 2000 Service Pack 4
  - Microsoft Windows XP Service Pack 1 and Microsoft Windows XP Service Pack 2
  - Microsoft Windows XP 64-Bit Edition Service Pack 1
  - Microsoft Windows XP 64-Bit Edition Version 2003
  - Microsoft Windows Server 2003
  - Microsoft Windows Server 2003 64-Bit Edition
  - Microsoft Windows 98, Microsoft Windows 98 Second Edition (SE), and
Microsoft Windows Millennium Edition (ME) - Review the FAQ section of this
bulletin for details about these operating

Impact of Vulnerability: Remote Code Execution

Maximum Severity Rating: Important

Restart required: No

Update can be uninstalled: Yes

More information on this vulnerability is available at:
http://www.microsoft.com/technet/security/bulletin/MS04-041.mspx

======================================================================

         =========================================================
         Les serveurs de référence du CERT-Renater
         http://www.urec.fr/securite
         http://www.cru.fr/securite
         http://www.renater.fr
         =========================================================
         + CERT-RENATER          | tel : 01-53-94-20-44          +
         + 151 bd de l'Hopital   | fax : 01-53-94-20-41          +
         + 75013 Paris           | email: certsvp@renater.fr     +
         =========================================================






