Click Here to Install Silverlight*
United StatesChange|All Microsoft Sites
Microsoft
Download Center 
Search Advanced Search

Visual FoxPro 8.0 GDI+ Runtime Library Update

Brief Description
Visual FoxPro 8.0 Runtime library security update for buffer overrun vulnerability in JPEG Processing (GDI+).

On This Page

Quick Details
File Name:VFP8-KB887685-X86.exe
Version:1.0
Security Bulletins:MS04-028
Date Published:12/14/2004
Language:English
Download Size:1.3 MB
Estimated Download Time: 4 min 56K

Overview

This security update requires a released version of Visual FoxPro 8.0. Developers who have distributed custom Visual FoxPro 8.0 runtime applications that include a copy of the vulnerable gdiplus.dll file should evaluate the need to deploy the security update for the Microsoft Visual FoxPro 8.0 Runtime Library. This update is a downloadable setup that can be distributed by the developer to a customer who has a custom Visual FoxPro 8.0 runtime application. This security update resolves a newly-discovered, privately reported vulnerability. A buffer overrun vulnerability exists in the processing of JPEG image formats that could allow remote code execution on an affected system. The vulnerability and more details on this update are documented in Microsoft Security Bulletin MS04-028 at KB article 833987.

 Top of page

System Requirements

  • Supported Operating Systems: Windows 2000 Service Pack 2; Windows Server 2003; Windows XP
Same system requirements as Visual FoxPro 8.0 runtime.

 Top of page

Instructions

This security update requires a released version of Visual FoxPro 8.0. Developers who have distributed custom Visual FoxPro 8.0 runtime applications that include a copy of the vulnerable gdiplus.dll file should evaluate the need to deploy the security update for the Microsoft Visual FoxPro 8.0 Runtime Library. This update is a downloadable setup that can be distributed by the developer to a customer who has a custom Visual FoxPro 8.0 runtime application. This security update resolves a newly-discovered, privately reported vulnerability. A buffer overrun vulnerability exists in the processing of JPEG image formats that could allow remote code execution on an affected system. The vulnerability and more details on this update are documented in Microsoft Security Bulletin MS04-028 at KB article 833987.

Note When these types of Visual FoxPro 8.0 applications are installed on Windows XP or Windows Server 2003, they will generally use the operating system version of the vulnerable component. If you use these types of programs on Windows XP, Windows XP Service Pack 1 or Windows Server 2003, make sure that you install the operating system version of the security update. If you use these types of programs on other operating systems, make sure that you install this update.

 Top of page

Additional Information

Buffer Overrun
An attack in which a malicious user exploits an unchecked buffer in a program and overwrites the program code with their own data. If the program code is overwritten with new executable code, the effect is to change the program's operation as dictated by the attacker. If overwritten with other data, the likely effect is to cause the program to crash.

 Top of page

 Top of page


© 2009 Microsoft Corporation. All rights reserved. Contact Us |Terms of Use |Trademarks |Privacy Statement