There is bug in the Windows GDI (Graphics Device Interface) that hackers are taking advantage of according to Symantec’s DeepSight threat service.
The bug was patched by Microsoft recently on April Patch Tuesday. Those who are using Windows XP with the third service pack are safe.
Symantec added in their report that initial attempts of the hackers were not successful. However, users should still apply the recent patch that Microsoft released to be secure from this flaw.
The flaw is accessible either through a malformed Windows Metafile or Enhanced Metafile image.
Source: NetworkWorld

Articles
Blogs
Kits
Forums