You are using an out of date browser. It may not display this or other websites correctly. You should upgrade or use an alternative browser.
ms10-043
About this tag
MS10-043 is a Microsoft security bulletin addressing a critical vulnerability in the Canonical Display Driver (cdd.dll) that could allow remote code execution. The vulnerability, identified as CVE-2009-3678, involves an integer overflow in the display driver. While successful code execution is possible, it is considered unlikely due to memory randomization; a more probable outcome is a denial of service condition causing the system to stop responding and restart. Microsoft released a security update as part of MS10-043 to resolve this issue. The bulletin was published in July 2010 following a public report and investigation.
Revision Note: V2.0 (July 13, 2010): Advisory updated to reflect publication of security bulletin.
Summary: Microsoft has completed the investigation into a public report of this vulnerability. We have issued MS10-043 to address this issue. For more information about this issue...
Revision Note: V2.0 (July 13, 2010): Advisory updated to reflect publication of security bulletin.Summary: Microsoft has completed the investigation into a public report of this vulnerability. We have issued MS10-043 to address this issue. For more information about this issue, including...
Revision Note: V2.0 (July 13, 2010): Advisory updated to reflect publication of security bulletin.Summary: Microsoft has completed the investigation into a public report of this vulnerability. We have issued MS10-043 to address this issue. For more information about this issue, including...
Bulletin Severity Rating:Critical - This security update resolves a publicly disclosed vulnerability in the Canonical Display Driver (cdd.dll). Although it is possible that the vulnerability could allow code execution, successful code execution is unlikely due to memory randomization. In most...
Revision Note: V1.0 (May 18, 2010): Advisory published. Advisory Summary:Microsoft has completed the investigation into a public report of this vulnerability. We have issued MS10-043 to address this issue. For more information about this issue, including download links for an available security...