9.3

CVE-2007-0038

Stack-based buffer overflow in the animated cursor code in Microsoft Windows 2000 SP4 through Vista allows remote attackers to execute arbitrary code or cause a denial of service (persistent reboot) via a large length value in the second (or later) anih block of a RIFF .ANI, cur, or .ico file, which results in memory corruption when processing cursors, animated cursors, and icons, a variant of CVE-2005-0416, as originally demonstrated using Internet Explorer 6 and 7. NOTE: this might be a duplicate of CVE-2007-1765; if so, then CVE-2007-0038 should be preferred.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Microsoft ≫ Windows 2000 Update sp4
Microsoft ≫ Windows 2003 Server Version gold
Microsoft ≫ Windows 2003 Server Version gold Edition itanium
Microsoft ≫ Windows 2003 Server Version gold Edition x64
Microsoft ≫ Windows 2003 Server Version sp1
Microsoft ≫ Windows 2003 Server Version sp1 Edition itanium
Microsoft ≫ Windows 2003 Server Version sp2
Microsoft ≫ Windows 2003 Server Version sp2 Edition itanium
Microsoft ≫ Windows 2003 Server Version sp2 Edition x64
Microsoft ≫ Windows Vista Update gold
Microsoft ≫ Windows Vista Update gold Edition x64
Microsoft ≫ Windows Xp Update gold Edition professional_x64
Microsoft ≫ Windows Xp Update sp2
Microsoft ≫ Windows Xp Update sp2 Edition professional_x64
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 72.88% 0.994
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 9.3 8.6 10
AV:N/AC:M/Au:N/C:C/I:C/A:C
CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer

The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.

http://www.securityfocus.com/archive/1/466186/100/200/threaded
http://www.vupen.com/english/advisories/2007/1215
Vendor Advisory
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2007/ms07-017
http://www.us-cert.gov/cas/techalerts/TA07-100A.html
US Government Resource
http://archives.neohapsis.com/archives/fulldisclosure/2007-03/0470.html
http://secunia.com/advisories/24659
Vendor Advisory
http://securityreason.com/securityalert/2542
http://www.determina.com/security_center/security_advisories/securityadvisory_0day_032907.asp
Vendor Advisory
http://www.kb.cert.org/vuls/id/191609
US Government Resource
http://www.osvdb.org/33629
http://www.securityfocus.com/archive/1/464269/100/0/threaded
http://www.securityfocus.com/archive/1/464339/100/0/threaded
http://www.securityfocus.com/archive/1/464340/100/0/threaded
http://www.securityfocus.com/archive/1/464342/100/0/threaded
http://www.securityfocus.com/archive/1/464459/100/100/threaded
http://www.securityfocus.com/archive/1/464460/100/100/threaded
http://www.us-cert.gov/cas/techalerts/TA07-089A.html
US Government Resource
http://www.us-cert.gov/cas/techalerts/TA07-093A.html
US Government Resource
https://exchange.xforce.ibmcloud.com/vulnerabilities/33301
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1854