Vulnerabilities > CVE-2003-0659 - Buffer Overrun vulnerability in Microsoft ListBox/ComboBox Control User32.dll Function

047910
CVSS 7.2 - HIGH
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
local
low complexity
microsoft
nessus
exploit available

Summary

Buffer overflow in a function in User32.dll on Windows NT through Server 2003 allows local users to execute arbitrary code via long (1) LB_DIR messages to ListBox or (2) CB_DIR messages to ComboBox controls in a privileged application.

Exploit-Db

descriptionMS Windows (ListBox/ComboBox Control) Local Exploit (MS03-045). CVE-2003-0659. Local exploit for windows platform
idEDB-ID:122
last seen2016-01-31
modified2003-11-14
published2003-11-14
reporterxCrZx
sourcehttps://www.exploit-db.com/download/122/
titleMicrosoft Windows - ListBox/ComboBox Control Local Exploit MS03-045

Nessus

NASL familyWindows : Microsoft Bulletins
NASL idSMB_NT_MS03-045.NASL
descriptionA vulnerability exists because the ListBox control and the ComboBox control both call a function, located in the User32.dll file, that contains a buffer overrun. A local, interactive attacker could run a program that sends a specially crafted Windows message to any application that has implemented the ListBox control or the ComboBox control, causing the application to take any action specified. An attacker must have valid login credentials to exploit the vulnerability. It can not be exploited remotely.
last seen2020-06-01
modified2020-06-02
plugin id11885
published2003-10-15
reporterThis script is Copyright (C) 2003-2018 Tenable Network Security, Inc.
sourcehttps://www.tenable.com/plugins/nessus/11885
titleMS03-045: Buffer Overrun in the ListBox and in the ComboBox (824141)

Oval

  • accepted2011-05-16T04:02:18.119-04:00
    classvulnerability
    contributors
    • nameTiffany Bergeron
      organizationThe MITRE Corporation
    • nameAndrew Buttner
      organizationThe MITRE Corporation
    • nameChristine Walzer
      organizationThe MITRE Corporation
    • nameChristine Walzer
      organizationThe MITRE Corporation
    • nameJeff Cheng
      organizationOpsware, Inc.
    • nameBrendan Miles
      organizationThe MITRE Corporation
    • nameShane Shaffer
      organizationG2, Inc.
    • nameSudhir Gandhe
      organizationTelos
    • nameShane Shaffer
      organizationG2, Inc.
    descriptionBuffer overflow in a function in User32.dll on Windows NT through Server 2003 allows local users to execute arbitrary code via long (1) LB_DIR messages to ListBox or (2) CB_DIR messages to ComboBox controls in a privileged application.
    familywindows
    idoval:org.mitre.oval:def:201
    statusaccepted
    submitted2003-10-28T12:00:00.000-04:00
    titleWindows XP ComboBox/ListBox GUI Widget User32.dll Buffer Overflow
    version74
  • accepted2007-11-13T12:01:13.002-05:00
    classvulnerability
    contributors
    • nameTiffany Bergeron
      organizationThe MITRE Corporation
    • nameChristine Walzer
      organizationThe MITRE Corporation
    • nameChristine Walzer
      organizationThe MITRE Corporation
    • nameJeff Cheng
      organizationOpsware, Inc.
    descriptionBuffer overflow in a function in User32.dll on Windows NT through Server 2003 allows local users to execute arbitrary code via long (1) LB_DIR messages to ListBox or (2) CB_DIR messages to ComboBox controls in a privileged application.
    familywindows
    idoval:org.mitre.oval:def:340
    statusaccepted
    submitted2003-10-16T12:00:00.000-04:00
    titleWindows 2000 ComboBox/ListBox GUI Widget User32.dll Buffer Overflow
    version68