The ANI parser in Microsoft Windows before 7 on the x86 platform, as used in Internet Explorer and other applications, allows remote attackers to cause a denial of service (memory and CPU consumption) via a crafted biClrUsed value in the BITMAPINFO header of a .ANI file.
References
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 01:13
Type | Values Removed | Values Added |
---|---|---|
References | () http://code.google.com/p/skylined/issues/detail?id=3 - | |
References | () http://skypher.com/index.php/2010/03/08/ani-file-bitmapinfoheader-biclrused-bounds-check-missing/ - URL Repurposed | |
References | () http://www.securityfocus.com/bid/38579 - Exploit | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/56756 - |
14 Feb 2024, 01:17
Type | Values Removed | Values Added |
---|---|---|
References | (MISC) http://skypher.com/index.php/2010/03/08/ani-file-bitmapinfoheader-biclrused-bounds-check-missing/ - URL Repurposed |
Information
Published : 2010-03-24 22:44
Updated : 2024-11-21 01:13
NVD link : CVE-2010-1098
Mitre link : CVE-2010-1098
CVE.ORG link : CVE-2010-1098
JSON object : View
Products Affected
microsoft
- windows_vista
- windows_xp
CWE
CWE-399
Resource Management Errors