Integer overflow in the ReadWideString function in agentdpv.dll in Microsoft Agent on Microsoft Windows 2000 SP4, XP SP2, and Server 2003 up to SP1 allows remote attackers to execute arbitrary code via a large length value in an .ACF file, which results in a heap-based buffer overflow.
References
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 00:13
Type | Values Removed | Values Added |
---|---|---|
References | () http://secunia.com/advisories/22878 - Vendor Advisory | |
References | () http://securitytracker.com/id?1017222 - | |
References | () http://www.coseinc.com/alert.html - | |
References | () http://www.kb.cert.org/vuls/id/810772 - US Government Resource | |
References | () http://www.securityfocus.com/archive/1/458558/100/0/threaded - | |
References | () http://www.securityfocus.com/bid/21034 - | |
References | () http://www.us-cert.gov/cas/techalerts/TA06-318A.html - US Government Resource | |
References | () http://www.vupen.com/english/advisories/2006/4506 - Vendor Advisory | |
References | () https://docs.microsoft.com/en-us/security-updates/securitybulletins/2006/ms06-068 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/29945 - | |
References | () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A154 - |
Information
Published : 2006-11-14 21:07
Updated : 2024-11-21 00:13
NVD link : CVE-2006-3445
Mitre link : CVE-2006-3445
CVE.ORG link : CVE-2006-3445
JSON object : View
Products Affected
microsoft
- windows_2000
- windows_xp
- windows_2003_server
CWE
CWE-189
Numeric Errors