CVE-2013-1346: Buffer Overflow
Published May 15, 2013
·Updated
mpengine.dll in Microsoft Malware Protection Engine before 1.1.9506.0 on x64 platforms allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted file.
Affected Software
1 affected component
Microsoft Malware Protection Engine<=1.1.9402.0
Remediation
Patch Available
Event History
May 15, 2013
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2013-1346?
CVE-2013-1346 is classified as critical due to its potential to allow remote code execution.
2
How do I fix CVE-2013-1346?
To fix CVE-2013-1346, update the Microsoft Malware Protection Engine to version 1.1.9506.0 or later.
3
Which Microsoft products are affected by CVE-2013-1346?
CVE-2013-1346 affects the Microsoft Malware Protection Engine operating on x64 platforms prior to version 1.1.9506.0.
4
What type of attack does CVE-2013-1346 enable?
CVE-2013-1346 enables attackers to execute arbitrary code or cause a denial of service due to memory corruption.
5
When was CVE-2013-1346 disclosed?
CVE-2013-1346 was disclosed in 2013, highlighting a vulnerability in the Microsoft Malware Protection Engine.