7.1

CVE-2010-1098

Exploit
The ANI parser in Microsoft Windows before 7 on the x86 platform, as used in Internet Explorer and other applications, allows remote attackers to cause a denial of service (memory and CPU consumption) via a crafted biClrUsed value in the BITMAPINFO header of a .ANI file.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Microsoft ≫ Windows Vista Edition x86
Microsoft ≫ Windows Xp Edition x86
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 15.05% 0.963
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 7.1 8.6 6.9
AV:N/AC:M/Au:N/C:N/I:N/A:C
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://code.google.com/p/skylined/issues/detail?id=3
http://skypher.com/index.php/2010/03/08/ani-file-bitmapinfoheader-biclrused-bounds-check-missing/
URL Repurposed
http://www.securityfocus.com/bid/38579
Exploit
https://exchange.xforce.ibmcloud.com/vulnerabilities/56756