Heap-based buffer overflow in the HtmlHelp program (hh.exe) in HTML Help for Microsoft Windows 98, Me, NT 4.0, 2000, XP, and Server 2003 allows remote attackers to execute arbitrary commands via a .CHM file with a large length field, a different vulnerability than CVE-2003-1041.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
History
20 Nov 2024, 23:47
Type | Values Removed | Values Added |
---|---|---|
References | () http://lists.grok.org.uk/pipermail/full-disclosure/2004-July/023919.html - | |
References | () http://www.kb.cert.org/vuls/id/920060 - Patch, Third Party Advisory, US Government Resource | |
References | () http://www.us-cert.gov/cas/techalerts/TA04-196A.html - Patch, Third Party Advisory, US Government Resource | |
References | () https://docs.microsoft.com/en-us/security-updates/securitybulletins/2004/ms04-023 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/16586 - | |
References | () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1503 - | |
References | () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1530 - | |
References | () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A2155 - | |
References | () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A3179 - |
Information
Published : 2004-08-06 04:00
Updated : 2024-11-20 23:47
NVD link : CVE-2004-0201
Mitre link : CVE-2004-0201
CVE.ORG link : CVE-2004-0201
JSON object : View
Products Affected
microsoft
- windows_me
- windows_2003_server
- windows_98
- windows_nt
- windows_xp
- windows_98se
- windows_2000
avaya
- definity_one_media_server
- modular_messaging_message_storage_server
- ip600_media_servers
- s8100
CWE