The SfnLOGONNOTIFY function in win32k.sys in the kernel in Microsoft Windows 2000, XP, and Server 2003 allows local users to cause a denial of service (system crash) via a 0x4c value in the second argument (aka the Msg argument) of a PostMessage function call for the DDEMLEvent window.
References
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 01:15
Type | Values Removed | Values Added |
---|---|---|
References | () http://secunia.com/advisories/39456 - Vendor Advisory | |
References | () http://vigilance.fr/vulnerability/Windows-denials-of-service-of-win32k-sys-9607 - Exploit | |
References | () http://www.securityfocus.com/archive/1/510884/100/0/threaded - | |
References | () http://www.securityfocus.com/bid/39630 - Exploit |
Information
Published : 2010-05-06 12:47
Updated : 2024-11-21 01:15
NVD link : CVE-2010-1735
Mitre link : CVE-2010-1735
CVE.ORG link : CVE-2010-1735
JSON object : View
Products Affected
microsoft
- windows_server_2003
- windows_2003_server
- windows_xp
- windows_2000
CWE
CWE-20
Improper Input Validation