CVE-2004-0200

Buffer overflow in the JPEG (JPG) parsing engine in the Microsoft Graphic Device Interface Plus (GDI+) component, GDIPlus.dll, allows remote attackers to execute arbitrary code via a JPEG image with a small JPEG COM field length that is normalized to a large integer length before a memory copy operation.

Date published : 2004-09-17

http://marc.info/?l=bugtraq&m=109524346729948&w=2

http://www.us-cert.gov/cas/techalerts/TA04-260A.html