MS09-062: Vulnerabilities in GDI+ could allow remote code execution

Article translations Article translations
Article ID: 957488 - View products that this article applies to.
Support for Windows Vista Service Pack 1 (SP1) ends on July 12, 2011. To continue receiving security updates for Windows, make sure you're running Windows Vista with Service Pack 2 (SP2). For more information, refer to this Microsoft web page: Support is ending for some versions of Windows.
Support for Windows Vista Service Pack 1 (SP1) ends on July 12, 2011. To continue receiving security updates for Windows, make sure you're running Windows Vista with Service Pack 2 (SP2). For more information, refer to this Microsoft web page: Support is ending for some versions of Windows.
Expand all | Collapse all

On This Page

INTRODUCTION

Microsoft has released security bulletin MS09-062. To view the complete security bulletin, visit one of the following Microsoft Web sites:

How to obtain help and support for this security update

Help installing updates: Support for Microsoft Update

Security solutions for IT professionals: TechNet Security Troubleshooting and Support

Help protect your computer that is running Windows from viruses and malware: Virus Solution and Security Center

Local support according to your country: International Support

MORE INFORMATION

Known issues and additional information about this security update

For more information about this security update and for information about any known issues with specific releases of this software, click the following article number to view the article in the Microsoft Knowledge Base:
958869 MS09-062: Description of the security update for GDI+ for all editions of Windows XP, Windows Vista, Windows Server 2003, and Windows Server 2008 and for Windows Server 2000 with Internet Explorer 6 Service Pack 1: October 13, 2009
970892 MS09-062: Description of the security update for SQL Server 2005 Service Pack 3 GDR: October 13, 2009
970894 MS09-062: Description of the security update for SQL Server 2005 Service Pack 3 QFE: October 13, 2009
970895 MS09-062: Description of the security update for GDI+ for SQL Server 2005 Service Pack 2 GDR: October 13, 2009
970896 MS09-062: Description of the security update for SQL Server 2005 Service Pack 2 QFE: October 13, 2009
970899 MS09-062: Description of the security update for GDI+ for SQL Server 2000 Reporting Services Service Pack 2: October 13, 2009
971022 MS09-062: Description of the security update for Microsoft Visual Studio 2003 Service Pack 1: October 13, 2009
971023 MS09-062: Description of the security update for Microsoft Visual Studio 2005 Service Pack 1: October 13, 2009
971104 MS09-062: Description of the security update for Microsoft Visual FoxPro 8.0 Service Pack 1: October 13, 2009
971105 MS09-062: Description of the security update for Microsoft Visual FoxPro 9.0 Service Pack 2: October 13, 2009
971108 MS09-062: Description of the security update for Microsoft .NET Framework 1.1 Service Pack 1: October 13, 2009
971110 MS09-062: Description of the security update for Microsoft .NET Framework 2.0 Service Pack 1: October 13, 2009
971111 MS09-062: Description of the security update for Microsoft .NET Framework 2.0 Service Pack 2: October 13, 2009
971117 MS09-062: Description of the security update for Microsoft Report Viewer 2005 Service Pack 1 Redistributable Package: October 13, 2009
971118 MS09-062: Description of the security update for Microsoft Report Viewer 2008 Redistributable Package: October 13, 2009
971119 MS09-062: Description of the security update for Microsoft Report Viewer 2008 Service Pack 1 Redistributable Package: October 13, 2009
972221 MS09-062: Description of the security update for Microsoft Visual Studio 2008: October 13, 2009
972222 MS09-062: Description of the security update for Microsoft Visual Studio 2008 Service Pack 1: October 13, 2009
972580 MS09-062: Description of the security update for Office 2003: October 13, 2009
972581 MS09-062: Description of the security update for the 2007 Office system: October 13, 2009
974811 MS09-062: Description of the security update for Office XP: October 13, 2009
973636 MS09-062: Description of the security update for Microsoft Works 8: October 13, 2009
975337 MS09-062: Description of the security update for GDI+ for Microsoft Platform SDK Redistributable: October 13, 2009
975365 MS09-062: Description of the security update for GDI+ for Microsoft Visio 2002: October 13, 2009
975962 MS09-062: Description of the security update for Forefront Client Security on Windows 2000: October 13, 2009


Note In addition to the products listed in the Applies To section, this update also applies to Microsoft Report Viewer Redistributable 2008 SP1.

Properties

Article ID: 957488 - Last Review: May 9, 2012 - Revision: 4.0
APPLIES TO
  • Windows Server 2008 Service Pack 2, when used with:
    • Windows Server 2008 Datacenter without Hyper-V
    • Windows Server 2008 Enterprise without Hyper-V
    • Windows Server 2008 for Itanium-Based Systems
    • Windows Server 2008 Standard without Hyper-V
    • Windows Server 2008 Datacenter
    • Windows Server 2008 Enterprise
    • Windows Server 2008 Standard
    • Windows Web Server 2008
  • Windows Server 2008 Datacenter without Hyper-V
  • Windows Server 2008 Enterprise without Hyper-V
  • Windows Server 2008 for Itanium-Based Systems
  • Windows Server 2008 Standard without Hyper-V
  • Windows Server 2008 Datacenter
  • Windows Server 2008 Enterprise
  • Windows Server 2008 Standard
  • Windows Web Server 2008
  • Windows Vista Service Pack 2, when used with:
    • Windows Vista Business
    • Windows Vista Enterprise
    • Windows Vista Home Basic
    • Windows Vista Home Premium
    • Windows Vista Starter
    • Windows Vista Ultimate
    • Windows Vista Enterprise 64-bit Edition
    • Windows Vista Home Basic 64-bit Edition
    • Windows Vista Home Premium 64-bit Edition
    • Windows Vista Ultimate 64-bit Edition
    • Windows Vista Business 64-bit Edition
  • Windows Vista Service Pack 1, when used with:
    • Windows Vista Business
    • Windows Vista Enterprise
    • Windows Vista Home Basic
    • Windows Vista Home Premium
    • Windows Vista Starter
    • Windows Vista Ultimate
    • Windows Vista Enterprise 64-bit Edition
    • Windows Vista Home Basic 64-bit Edition
    • Windows Vista Home Premium 64-bit Edition
    • Windows Vista Ultimate 64-bit Edition
    • Windows Vista Business 64-bit Edition
  • Windows Vista Business
  • Windows Vista Enterprise
  • Windows Vista Home Basic
  • Windows Vista Home Premium
  • Windows Vista Starter
  • Windows Vista Ultimate
  • Windows Vista Enterprise 64-bit Edition
  • Windows Vista Home Basic 64-bit Edition
  • Windows Vista Home Premium 64-bit Edition
  • Windows Vista Ultimate 64-bit Edition
  • Windows Vista Business 64-bit Edition
  • Microsoft Windows Server 2003 Service Pack 2, when used with:
    • Microsoft Windows Server 2003, Standard Edition (32-bit x86)
    • Microsoft Windows Server 2003, Enterprise Edition (32-bit x86)
    • Microsoft Windows Server 2003, Datacenter Edition (32-bit x86)
    • Microsoft Windows Server 2003, Web Edition
    • Microsoft Windows Server 2003, Datacenter x64 Edition
    • Microsoft Windows Server 2003, Enterprise x64 Edition
    • Microsoft Windows Server 2003, Standard x64 Edition
    • Microsoft Windows XP Professional x64 Edition
    • Microsoft Windows Server 2003, Datacenter Edition for Itanium-Based Systems
    • Microsoft Windows Server 2003, Enterprise Edition for Itanium-based Systems
  • Microsoft Windows XP Service Pack 3, when used with:
    • Microsoft Windows XP Home Edition
    • Microsoft Windows XP Professional
  • Microsoft Windows XP Service Pack 2, when used with:
    • Microsoft Windows XP Home Edition
    • Microsoft Windows XP Professional
  • Microsoft Forefront Client Security, when used with:
    • Microsoft Windows 2000 Service Pack 4
  • Microsoft Visual Studio Team System 2008 Team Suite
  • Microsoft Visual Studio 2008 Standard Edition
  • Microsoft Visual Studio 2008 Professional Edition
  • Microsoft Visual Studio Team System 2008 Database Edition
  • Microsoft Visual Studio Team System 2008 Architecture Edition
  • Microsoft Visual Studio Team System 2008 Development Edition
  • Microsoft Visual Studio Team System 2008 Test Edition
  • Microsoft Visual Studio 2008 Service Pack 1, when used with:
    • Microsoft Visual Studio Team System 2008 Team Suite
    • Microsoft Visual Studio 2008 Standard Edition
    • Microsoft Visual Studio 2008 Professional Edition
    • Microsoft Visual Studio Team System 2008 Database Edition
    • Microsoft Visual Studio Team System 2008 Architecture Edition
    • Microsoft Visual Studio Team System 2008 Development Edition
    • Microsoft Visual Studio Team System 2008 Test Edition
  • Microsoft Visual Studio 2005 Service Pack 1, when used with:
    • Microsoft Visual Studio 2005 Team Suite
    • Microsoft Visual Studio 2005 Standard Edition
    • Microsoft Visual Studio 2005 Professional Edition
    • Microsoft Visual Studio 2005 Team Edition for Database Professionals
    • Microsoft Visual Studio 2005 Team Edition for Software Architects
    • Microsoft Visual Studio 2005 Team Edition for Software Developers
    • Microsoft Visual Studio 2005 Team Edition for Software Testers
    • Microsoft Visual Studio 2005 Tools for the Microsoft Office System
  • Microsoft Visual Studio .NET 2003 Service Pack 1, when used with:
    • Microsoft Visual Studio .NET 2003 Enterprise Architect
    • Microsoft Visual Studio .NET 2003 Enterprise Developer
    • Microsoft Visual Studio .NET 2003 Professional Edition
    • Microsoft Visual Basic .NET 2003 Standard Edition
    • Microsoft Visual C++ .NET 2003 Standard Edition
    • Microsoft Visual C# .NET 2003 Standard Edition
    • Microsoft Visual J# .NET 2003 Standard Edition
  • Microsoft Report Viewer Redistributable 2005 Service Pack 1
  • Microsoft Report Viewer Redistributable 2008
  • Microsoft .NET Framework 2.0 Service Pack 2
  • Microsoft .NET Framework 2.0 Service Pack 1 (x86)
  • Microsoft .NET Framework 1.1 Service Pack 1
  • Microsoft Visual FoxPro 9.0 Service Pack 2
  • Microsoft SQL Server 2005 Service Pack 3, when used with:
    • Microsoft SQL Server 2005 Standard Edition
    • Microsoft SQL Server 2005 Enterprise Edition
    • Microsoft SQL Server 2005 Express Edition
    • Microsoft SQL Server 2005 Express Edition with Advanced Services
    • Microsoft SQL Server 2005 Developer Edition
    • Microsoft SQL Server 2005 Standard X64 Edition
    • Microsoft SQL Server 2005 Enterprise X64 Edition
    • Microsoft SQL Server 2005 Enterprise Edition for Itanium-based Systems
  • Microsoft SQL Server 2005 Service Pack 2, when used with:
    • Microsoft SQL Server 2005 Developer Edition
    • Microsoft SQL Server 2005 Enterprise Edition
    • Microsoft SQL Server 2005 Enterprise Edition for Itanium-based Systems
    • Microsoft SQL Server 2005 Enterprise X64 Edition
    • Microsoft SQL Server 2005 Express Edition
    • Microsoft SQL Server 2005 Standard Edition
    • Microsoft SQL Server 2005 Standard X64 Edition
    • Microsoft SQL Server 2005 Workgroup Edition
  • 2007 Microsoft Office Suite Service Pack 2, when used with:
    • Microsoft Office Basic 2007
    • Microsoft Office Standard 2007
    • Microsoft Office Professional 2007
    • Microsoft Office Small Business 2007
    • Microsoft Office Home and Student 2007
    • Microsoft Office Enterprise 2007
    • Microsoft Office Ultimate 2007
    • Microsoft Office Access 2007
    • Microsoft Office Excel 2007
    • Microsoft Office Excel 2007 (Home and Student version)
    • Microsoft Office Excel Viewer 2007
    • Microsoft Office InfoPath 2007
    • Microsoft Office OneNote 2007
    • Microsoft Office OneNote 2007 (Home and Student version)
    • Microsoft Office Outlook 2007
    • Microsoft Office PowerPoint 2007
    • Microsoft Office PowerPoint 2007 (Home and Student version)
    • Microsoft Office PowerPoint Viewer 2007
    • Microsoft Office Project Professional 2007
    • Microsoft Office Project Standard 2007
    • Microsoft Office Publisher 2007
    • Microsoft Office Visio Professional 2007
    • Microsoft Office Visio Standard 2007
    • Microsoft Office Word 2007
    • Microsoft Office Word 2007 (Home and Student version)
    • Word Viewer
    • Microsoft Office Compatibility Pack for Word, Excel, and PowerPoint 2007 File Formats
    • Microsoft Office Groove 2007
  • 2007 Microsoft Office Suite Service Pack 1, when used with:
    • Microsoft Office Basic 2007
    • Microsoft Office Standard 2007
    • Microsoft Office Professional 2007
    • Microsoft Office Small Business 2007
    • Microsoft Office Home and Student 2007
    • Microsoft Office Enterprise 2007
    • Microsoft Office Ultimate 2007
    • Microsoft Office Access 2007
    • Microsoft Office Excel 2007
    • Microsoft Office Excel 2007 (Home and Student version)
    • Microsoft Office Excel Viewer 2007
    • Microsoft Office InfoPath 2007
    • Microsoft Office OneNote 2007
    • Microsoft Office OneNote 2007 (Home and Student version)
    • Microsoft Office Outlook 2007
    • Microsoft Office PowerPoint 2007
    • Microsoft Office PowerPoint 2007 (Home and Student version)
    • Microsoft Office PowerPoint Viewer 2007
    • Microsoft Office Project Professional 2007
    • Microsoft Office Project Standard 2007
    • Microsoft Office Publisher 2007
    • Microsoft Office Visio Professional 2007
    • Microsoft Office Visio Standard 2007
    • Microsoft Office Word 2007
    • Microsoft Office Word 2007 (Home and Student version)
    • Word Viewer
  • Microsoft Office 2007 Compatibility Pack Service Pack 1
  • Microsoft Office Groove 2007
  • Microsoft Office 2003 Service Pack 3, when used with:
    • Microsoft Office Basic Edition 2003
    • Microsoft Office Standard Edition 2003
    • Microsoft Office Professional Edition 2003
    • Microsoft Office Excel Viewer 2003
  • Microsoft Office Excel Viewer 2003
  • Microsoft Office Word Viewer 2003
  • Microsoft Office Word Viewer 2003 Service Pack 3
  • Word Viewer
  • Microsoft Visio 2002 Standard Edition
  • Microsoft Visio 2002 Professional Edition
  • Microsoft Works 8
  • Microsoft Expression Web
  • Microsoft Expression Web 2
Keywords: 
atdownload kbbug kbexpertiseinter kbfix kbsecbulletin kbsecurity kbsecvulnerability kbsurveynew KB957488

Give Feedback

 

Contact us for more help

Contact us for more help
Connect with Answer Desk for expert help.
Get more support from smallbusiness.support.microsoft.com