Skip to content

J-Security Center

Latest Attack Object Updates
  • IDP Daily Update #1282
    posted: 10/10/08
  • NSM Daily Update #1282
    posted: 10/10/08
  • Deep Inspection 5.3r5 and above, 5.4, 6.0 #1282
    posted: 10/10/08
  • Deep Inspection 5.1, 5.2, 5.3r4 and below #1274
    posted: 10/10/08
  • Deep Inspection 5.0 #1132
    posted: 04/01/08
  • Antivirus
    posted: 10/10/08
Microsoft Security Bulletins

July 2005


Prior Updates:


lock icon Login to learn more about how Juniper Networks products can protect you from these vulnerabilities. (If you don't already have a login, see Requesting Support.)

July 2005

Microsoft Security Bulletin MS05-035

Vulnerability in Microsoft Word Could Allow Remote Code Execution (903672)

Severity: Critical
Vulnerabilities:
  • Font Parsing Vulnerability in Word - CAN-2005-0564
    A remote code execution vulnerability exists in Word that could allow an attacker who successfully exploited this vulnerable to take complete control of the affected system.

Microsoft Security Bulletin MS05-036

Vulnerability in Microsoft Color Management Vulnerability in Microsoft Color Management Module Could Allow Remote Code Execution (901214)

Severity: Critical
Vulnerabilities:
  • Color Management Module Vulnerability - CAN-2005-1219
    A remote code execution vulnerability exists in the Microsoft Color Management Module because of the way that it handles ICC profile format tag validation. An attacker could exploit the vulnerability by constructing a malicious image file that could potentially allow remote code execution if a user visited a malicious Web site or viewed a malicious e-mail message. An attacker who successfully exploited this vulnerability could take complete control of an affected system.

Microsoft Security Bulletin MS05-037

Vulnerability in JView Profiler Could Allow Remote Code Execution (903235)

Severity: Critical
Vulnerabilities:
  • JView Profiler Vulnerability - CAN-2005-2087
    A remote code execution vulnerability exists in HTML Help that could allow an attacker who successfully exploited this vulnerability to take complete control of the affected system.