Notice: This website is an unofficial Microsoft Knowledge Base (hereinafter KB) archive and is intended to provide a reliable access to deleted content from Microsoft KB. All KB articles are owned by Microsoft Corporation. Read full disclaimer for more details.

MS13-071: Vulnerability in Windows Theme file could allow remote code execution: September 10, 2013


View products that this article applies to.

INTRODUCTION

Microsoft has released security bulletin MS13-071. To view the complete security bulletin, go to one of the following Microsoft websites:

How to obtain help and support for this security update

Help installing updates: Support for Microsoft Update

Security solutions for IT professionals:
TechNet Security Troubleshooting and Support

Help protect your Windows-based computer from viruses and malware: Virus Solution and Security Center

Local support according to your country:
International Support

↑ Back to the top


FILE INFORMATION

The English (United States) version of this software update installs files that have the attributes that are listed in the following tables. The dates and times for these files are listed in Coordinated Universal Time (UTC). The dates and times for these files on your local computer are displayed in your local time and with your current daylight saving time (DST) bias. Additionally, the dates and times may change when you perform certain operations on the files. 
Windows XP and Windows Server 2003 file information
  • The files that apply to a specific milestone (SPn) and service branch (QFE, GDR) are noted in the "SP requirement" and "Service branch" columns.
  • GDR service branches contain only those fixes that are widely released to address widespread, critical issues. QFE service branches contain hotfixes in addition to widely released fixes.
  • In addition to the files that are listed in these tables, this software update also installs an associated security catalog file (KBnumber.cat) that is signed with a Microsoft digital signature.

For all supported x86-based versions of Windows XP

File nameFile versionFile sizeDateTimePlatform
Themeui.dll6.0.2900.6437386,56009-Aug-201301:56x86

For all supported x64-based versions of Windows Server 2003 and Windows XP Professional x64 edition

File nameFile versionFile sizeDateTimePlatformSP requirementService branch
Themeui.dll6.0.3790.5211545,28014-Aug-201316:00x64SP2SP2QFE
Wthemeui.dll6.0.3790.5211388,09614-Aug-201316:00x86SP2SP2QFE\WOW

For all supported x86-based versions of Windows Server 2003

File nameFile versionFile sizeDateTimePlatform
Themeui.dll6.0.3790.5211388,09614-Aug-201303:21x86

For all supported IA-64-based versions of Windows Server 2003

File nameFile versionFile sizeDateTimePlatformSP requirementService branch
Themeui.dll6.0.3790.5211911,87214-Aug-201316:00IA-64SP2SP2QFE
Wthemeui.dll6.0.3790.5211388,09614-Aug-201316:00x86SP2SP2QFE\WOW

↑ Back to the top


Windows Vista and Windows Server 2008 file information
  • The files that apply to a specific product, milestone (SPn), and service branch (LDR, GDR) can be identified by examining the file version numbers as shown in the following table:
    VersionProductMilestoneService branch
    6.0.6002.18xxxWindows Vista SP2 and Windows Server 2008 SP2SP2GDR
    6.0.6002.23xxxWindows Vista SP2 and Windows Server 2008 SP2SP2LDR
  • GDR service branches contain only those fixes that are widely released to address widespread, critical issues. LDR service branches contain hotfixes in addition to widely released fixes.
Note The MANIFEST files (.manifest) and MUM files (.mum) that are installed are not listed.

For all supported x86-based versions of Windows Vista and Windows Server 2008

File nameFile versionFile sizeDateTimePlatform
Themeui.dll6.0.6002.18888615,93616-Jul-201304:35x86
Themeui.dll6.0.6002.23161616,44816-Jul-201302:53x86

For all supported x64-based versions of Windows Vista and Windows Server 2008

File nameFile versionFile sizeDateTimePlatform
Themeui.dll6.0.6002.18888689,15216-Jul-201309:25x64
Themeui.dll6.0.6002.23161689,15216-Jul-201308:44x64
Themeui.dll6.0.6002.18888615,93616-Jul-201304:35x86
Themeui.dll6.0.6002.23161616,44816-Jul-201302:53x86

For all supported IA-64-based versions of Windows Server 2008

File nameFile versionFile sizeDateTimePlatform
Themeui.dll6.0.6002.188881,066,49616-Jul-201308:43IA-64
Themeui.dll6.0.6002.231611,066,49616-Jul-201307:29IA-64
Themeui.dll6.0.6002.18888615,93616-Jul-201304:35x86
Themeui.dll6.0.6002.23161616,44816-Jul-201302:53x86

File hash information
File nameSHA1 hashSHA256 hash
Windows6.0-KB2864063-ia64.msu6C10A06CEEA0E7B4FD018A3B743E35B5BC719CFB046EE8576E6D1D69CCA9145864BF3747FA6E893F8B0731A8FD84F5F0E9C18AB0
Windows6.0-KB2864063-x64.msu083DE882F6C7C386D0F0BC3DAB69BCD4A3E630D50E3C371FA72EF3E2D6D492FA9D6DE2EA1276D17A2FECA99D040EEC377F62947D
Windows6.0-KB2864063-x86.msu2576BE44235FF01407B9902040EEB9B0BC6EE22E1473C5D8EC2B6EBCF17E88474B17D11F9E667FF463184C2B1BA65FAB99A0386C
WindowsServer2003-KB2864063-ia64-DEU.exe7A9B388942E68F751CC57F34471D0C79464A003E5E722FAD285EA44CBDEEFBA0054B66206A522A201E763E636F3656C6E2C13306
WindowsServer2003-KB2864063-ia64-ENU.exeEA060BD6A0DBDDCB8E2F373375B5B00F00322B879FE6F1A224B4E55A2DB7BDAB155AB2DD7FCCA90CF7809BB1204A82B3831F8024
WindowsServer2003-KB2864063-ia64-FRA.exe73CEFB8B5E4724B1FDFF7D03BE83A161E7813B7BE69A7308202D6C8C8841CA7A9BF0640A3ADF5FC967E4A5B902434335DB199BF2
WindowsServer2003-KB2864063-ia64-JPN.exeEF358F93F1CC936EDC03F36076C8549B1C8B49B3B3E033598F5E412C9F4C2FC36321C420C361FDD21BC962FF7CBCED222A90C798
WindowsServer2003-KB2864063-x86-CHS.exe4FABD4BDD660F05FA1965A14223A0F302192A0DEB648E5285B40942D350E80F4A119A5CD51C9F67E9B35290A9E15A5086A90DB89
WindowsServer2003-KB2864063-x86-CHT.exe335E4F718623CCEE35F4AF6C5360E06D05CA680375EA9DFF137DBBA224C7013B5D8AC5D5E067D2949F0BB7191D3AF5E1E8F7AF75
WindowsServer2003-KB2864063-x86-CSY.exe1BA2BA5580973B7F1ED29E808F119923D612653969718DEBBCDAA3BBC74611EAB043953F5E906867FD64FF22C8785207CD922120
WindowsServer2003-KB2864063-x86-DEU.exe450FC26A492C7B77E2DE9A3A4B78DD48080497D6C6B949F7AFC426D6A2FBE21BC1FB338DBA696214144B4E564C755718662229EB
WindowsServer2003-KB2864063-x86-ENU.exe8920EC2DB9884ABFAA42D0B6686939CCE1C3679E2BDD71C4065C09D0874D03E7F195FCC8A5786DFEA00A296F67462AD01288313F
WindowsServer2003-KB2864063-x86-ESN.exeA89354D48CCF1BB2A96E6927AF5713A287791F724F262A5BEE9677BD6C17E82E58EF91156375C78B2C352BA185F1B0F5CBA86219
WindowsServer2003-KB2864063-x86-FRA.exe13090F26424765A9A33331986BEC200AD7E012B34E94FE66FE464905CB1124D74CC24D5B5CF52B092D0E5699467D376417048B81
WindowsServer2003-KB2864063-x86-HUN.exe065F188FAE2F22E9ADE2FF54D5878626871B3F79E9610BD2B02677166ED2E288644FA0954CA97203F2A6F23A27B5DF4306E51338
WindowsServer2003-KB2864063-x86-ITA.exe3B15397E75256DF6A6D290D65E1BEBB026AED2A508BC8CE70F00FE2BF8519247406FA657E0EE165D760C03353B18C386A6B81417
WindowsServer2003-KB2864063-x86-JPN.exe81F6E6081A5E543CE067511FB2A4ECA40202D5A47C0622D9225B77C860108C4F8CCC20226642DAEFF463141C91F038849430A7DE
WindowsServer2003-KB2864063-x86-KOR.exe5C29D07219ABE77EA2D14A5482C443CE38FD069FCB1BDB5E1F7B79488F8CB1DD29A75851DE8F4619A8A9C1752F043E8717E73537
WindowsServer2003-KB2864063-x86-NLD.exeE2A13F29D5B62E99437E72CFAEE999ACF595E69F94089CF1164E611BF9A2E119E30C8DAEBDF418D88BC3001E36161C48ADAB23DB
WindowsServer2003-KB2864063-x86-PLK.exe0CD09410155EBF26A91B9994EA2C22B0D86B1837BF8C3D48FF51891EDC18F17500457B72E768A91181ECA0BD934EA30007C64168
WindowsServer2003-KB2864063-x86-PTB.exe60E3E6A80CBB8239D60018ABAC4258B781A7911E34194A51FB6E25695B08BA47D2D950CC2A6D203BC67A0C633B466132AF61184A
WindowsServer2003-KB2864063-x86-PTG.exe79F2416F2DED7F606419F950CB761C5CA50C60E3DF1631BF77A04022A927750E09A40B7DE0F40AA49E9886E8A64542F1BE7A1843
WindowsServer2003-KB2864063-x86-RUS.exe6F59621D4887F1CAB8140E2F9A859D6DD6837126C1DC117635C8250B1AB8FA4DAD2F1E494A7565052F2D5E4144661734595763DF
WindowsServer2003-KB2864063-x86-SVE.exe51ABBAF9BE415C4708FCFB901DFD158C659326CCBF5BD86C0E46E9D36FC39CF18B6AA353E8EB108782EC5001395764F59B0D5245
WindowsServer2003-KB2864063-x86-TRK.exe06B868F7A7B917E5683938E4BD3D787B1D0EAFE6257AEFE5F53B95962BD411A8A00C68F1BD1D53CE7F956CBE99667287EAB3D2F3
WindowsServer2003.WindowsXP-KB2864063-x64-CHS.exe82DBF380A3CE7169BEF236A17CC5654E7027F58ACF8FE9E5D0B2AA3B5D0FF0A57A5C618038057C9A746481262E8FC0A6B3CA7613
WindowsServer2003.WindowsXP-KB2864063-x64-CHT.exeD1645891D7785F6A132CB5DA624DCDC883C4ABC95F88010178DCD15660960D586CC8C15CDCACF3C32ED258634194FCB3C93D6F8C
WindowsServer2003.WindowsXP-KB2864063-x64-DEU.exe0DA43B9E1697A4AED221F866F57D85B1C6376BEA281923F5E3604C6715C47F3FB09F0872B9E0357BDF82449EB2241380E8B0EFAA
WindowsServer2003.WindowsXP-KB2864063-x64-ENU.exe49A0879A326584AF14BD9654ADCFD5AA407D72AD933646A1C1DC121902817452AEDC8E15C1B7E9D10707B82DBA83DEB661CDEB33
WindowsServer2003.WindowsXP-KB2864063-x64-ESN.exe29058F831614AABA90D55151083B85ED428D78173F54196E45EF6106C029ADCCB9F08984F4442B310A4A8F121BDE8AAC24F8CBB4
WindowsServer2003.WindowsXP-KB2864063-x64-FRA.exe2F322FF4CC1175F2C8AED626E634DAF16CDB7DB468220613B8569389E9E476DBFA9FB34065BEAB0AB94A7195048D9170F3B378E0
WindowsServer2003.WindowsXP-KB2864063-x64-ITA.exe74048ED461516C1035B455777D6ECA81708A03BB90B10F1540935158D2FC93B56847954396FA6017399343B9C3B8DB5F67A11CE1
WindowsServer2003.WindowsXP-KB2864063-x64-JPN.exe5F4D21A71061A412983EE8C64DC13C9CE1F3CAEEB326E861F4A30FF49D40541EA1877DC96D10CE6C4D0F450971EE791E16CD7464
WindowsServer2003.WindowsXP-KB2864063-x64-KOR.exe24696F91FA23CD26FCFEEF53FE434CF4627D23F35C7CCB1488B17C232EAA81EF29F266B5CD01CA5AA9A2E5174B2DE8EBFC2312D2
WindowsServer2003.WindowsXP-KB2864063-x64-PTB.exe7A5FD0279435A06BF404D89F1EC8F88AFE8D1ABA8CEE4D322F1FF4E79581ABEC11D87DB3B7C575D757ED38EFFFC5421CB5F4959E
WindowsServer2003.WindowsXP-KB2864063-x64-RUS.exeD39DC7B11D1F3D19256B6630469F37A4E2E7D44513A6B3FA8D96DA5B1E4093047B78E6390E8A217FABA084DFBCA918E198CF6BCD
WindowsXP-KB2864063-x86-ARA.exe28BEEB2057CE9B72B7321F265D5CFBB89AD6ADB14190343897B74109F7C23822833FB52B484354134A6DAF1C9F51E7C282CFADAE
WindowsXP-KB2864063-x86-CHS.exe80729F44E83F61BA0410337D89A0665C051E947E263520950139931BE25443BE38DEFA9410D40C451E266E7939F475348BCCB8B8
WindowsXP-KB2864063-x86-CHT.exe2F62A27A0AD238D71FE5AF06AF574A69B25CA4A0C6F0F41EEDD536B968E834F6BE733D18721787170394247A39BAF3E76575A876
WindowsXP-KB2864063-x86-CSY.exeE95765AECD5A8E74716AD3B2755E48343B36DF6219CC2C870F8B6A53A4DD518F2EC92C6CD0D8A6108A91EFF5D71A2F237FE6E4B8
WindowsXP-KB2864063-x86-DAN.exeDC06E9E3679F16ACF0D2EB75E34BA2608DE1F2FA7186021052E6D054EB9428AB9B7734A4A6AA268EF934E1A9491F1F0675AF11E6
WindowsXP-KB2864063-x86-DEU.exe9A32F7B0B8E9F9B4E39FBB3888EFA0820833F1905365BEA7BAD34360B0AD742ACDD4F687777E79363AD2154B7A72B8EA3DEC9D9B
WindowsXP-KB2864063-x86-ELL.exeFE8BB6D84BB5E606A9960D5BB3C4E66454FF5798BCB051798B1106830F1426F261E8A048D572EDE21F4A8D5ECA742FD14A6FF3B0
WindowsXP-KB2864063-x86-ENU.exe135F76C6E66A127411CF3E406959CA56EAE8E55130447F122577FAED3DF3B872B08C92E785814E102502F74774D8A48EBFD55861
WindowsXP-KB2864063-x86-ESN.exe7529273D27CC3BCDE1267E5231ECF0CB9EA4C00FCA93521FD01FBB1BC77BA592DA71FB02A9CCBA9DD35C28476F4C491131305001
WindowsXP-KB2864063-x86-FIN.exeA92FB02A8E3F2BD6784758009882C0384736D7AA6823FE1608998BA9FE32CBD178B504BDF2B0DBA97ED7B2C82F755588FDF16B84
WindowsXP-KB2864063-x86-FRA.exe1F46A63D370EE00860D52ED3C3DCAB7D1BE32E6375DC3027E95126FDEE29C0D882467CC55E0F5360604D6816E3F60CA0E7925DF4
WindowsXP-KB2864063-x86-HEB.exe7F93834265887518A3BE321BE0C1F16DDB97F49B678EEDF90E1730D2225822C59BCB5CD06A507C0A3B6EB5054244A054B715A2F0
WindowsXP-KB2864063-x86-HUN.exe6B281C807B87D368C9675354B717B2449C81C0EDA0BB628248D652402929C7DCF4C1441201847F75B4F0422F5D8460C08971F57A
WindowsXP-KB2864063-x86-ITA.exe7D7141A00A0466DC0FB7AFAEF518C1C61ADFD358FDF9D0CD9B13A4E5E2C0C42A4B55A298A370422369D1ACE2C26C75AB308EB0BD
WindowsXP-KB2864063-x86-JPN.exeBA351BB5206CDBA6A2C17951D0AE4144D571D410BAF119951D188A3B36269954EC78CF4BC3C6151FEE2FA69EAB90AB6362DAFD1A
WindowsXP-KB2864063-x86-KOR.exe0A545BA2D83C78C86FCA40AB58E4CE15A46670796953D895D131F68B6EC940A41734EF1A3FF51332582B5069670834E992E7FE5E
WindowsXP-KB2864063-x86-NLD.exe67140AF9D41F6DA847E24F2959867D11ACD1BCCEC6B50C26A1E5D958057FAFE4CD1E973DE61FC88C10EADF16A812F86071EBFA36
WindowsXP-KB2864063-x86-NOR.exe08763D9C51D772379FBB012A766D5149C6C3E602188D01119DB60E9C4E4EE165C616227EB0F32C797239F4524568FB5F03FDE75F
WindowsXP-KB2864063-x86-PLK.exe6B4234F384B8226B1E33AE7212EA45421E6A09799F3F5CED2F936168BD28FE6155C49F850898C5BEE0F0BCF00A1B7DB4CA0D9C42
WindowsXP-KB2864063-x86-PTB.exeFD045B402D039C9C2423E9AD534AA1073B9F86F0DEFCEBD56E493730680865ED52F657F50DCDF7A6105197CB8ED89075AC86DC31
WindowsXP-KB2864063-x86-PTG.exe686593CCFBC8C88EF009DE2EA4B330741A9554BE5DC3C13B5F43496078F9D69B19223C79104F39E593260BA16C0EEC4F3775652F
WindowsXP-KB2864063-x86-RUS.exe8EEF1507F9A9C1DB985ADEB8A359BEEAE6C76F23B435EE6FF3ACDA92A911A4E738A976A8088FB9926EE7200E6F4691C50D885E8C
WindowsXP-KB2864063-x86-SVE.exeFA791A22E0E302854D62936C8A176BCB81F4CEF5A53E00EABCFCCBCE4D3EE1C4A5CB81F75D823BA20DC846E83031D04D81114D3F
WindowsXP-KB2864063-x86-TRK.exeD03631AB1A45F50E6470B6DFF754E0586AA99E3FCCF8220B051D872D63FA6708C083D422C9656F6AE8DF2AA5DEF260327FEBEE62

↑ Back to the top


Keywords: kb, atdownload, kbbug, kbexpertiseinter, kbfix, kblangall, kbmustloc, kbsecbulletin, kbsecreview, kbsecurity, kbsecvulnerability, kbsurveynew

↑ Back to the top

Article Info
Article ID : 2864063
Revision : 1
Created on : 1/7/2017
Published on : 9/10/2013
Exists online : False
Views : 251