Vulnerabilities > CVE-2004-0566 - Unspecified vulnerability in Microsoft Internet Explorer 5.0/5.0.1/5.5

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
low complexity
microsoft

Summary

Integer overflow in imgbmp.cxx for Windows 2000 allows remote attackers to execute arbitrary code via a BMP image with a large bfOffBits value.

Oval

  • accepted2014-02-24T04:01:46.464-05:00
    classvulnerability
    contributors
    • nameIngrid Skoog
      organizationThe MITRE Corporation
    • nameChristine Walzer
      organizationThe MITRE Corporation
    • nameRobert L. Hollis
      organizationThreatGuard, Inc.
    • nameMaria Mikhno
      organizationALTX-SOFT
    descriptionInteger overflow in imgbmp.cxx for Windows 2000 allows remote attackers to execute arbitrary code via a BMP image with a large bfOffBits value.
    familywindows
    idoval:org.mitre.oval:def:216
    statusaccepted
    submitted2004-07-30T12:00:00.000-04:00
    titleIE v5.01,SP4 Bitmap Integer Overflow Vulnerability
    version68
  • accepted2014-02-24T04:03:14.169-05:00
    classvulnerability
    contributors
    • nameIngrid Skoog
      organizationThe MITRE Corporation
    • nameRobert L. Hollis
      organizationThreatGuard, Inc.
    • nameMaria Mikhno
      organizationALTX-SOFT
    descriptionInteger overflow in imgbmp.cxx for Windows 2000 allows remote attackers to execute arbitrary code via a BMP image with a large bfOffBits value.
    familywindows
    idoval:org.mitre.oval:def:306
    statusaccepted
    submitted2004-07-30T12:00:00.000-04:00
    titleIE v5.01,SP3 Bitmap Integer Overflow Vulnerability
    version67
  • accepted2014-02-24T04:03:14.886-05:00
    classvulnerability
    contributors
    • nameIngrid Skoog
      organizationThe MITRE Corporation
    • nameMaria Mikhno
      organizationALTX-SOFT
    descriptionInteger overflow in imgbmp.cxx for Windows 2000 allows remote attackers to execute arbitrary code via a BMP image with a large bfOffBits value.
    familywindows
    idoval:org.mitre.oval:def:322
    statusaccepted
    submitted2004-07-30T12:00:00.000-04:00
    titleIE v5.5,SP2 Bitmap Integer Overflow Vulnerability
    version66
  • accepted2014-02-24T04:03:20.970-05:00
    classvulnerability
    contributors
    • nameIngrid Skoog
      organizationThe MITRE Corporation
    • nameChristine Walzer
      organizationThe MITRE Corporation
    • nameChristine Walzer
      organizationThe MITRE Corporation
    • nameMaria Mikhno
      organizationALTX-SOFT
    descriptionInteger overflow in imgbmp.cxx for Windows 2000 allows remote attackers to execute arbitrary code via a BMP image with a large bfOffBits value.
    familywindows
    idoval:org.mitre.oval:def:507
    statusaccepted
    submitted2004-07-30T04:00:00.000-04:00
    titleIE v6.0 Bitmap Integer Overflow Vulnerability
    version67
  • accepted2014-02-24T04:03:21.423-05:00
    classvulnerability
    contributors
    • nameIngrid Skoog
      organizationThe MITRE Corporation
    • nameRobert L. Hollis
      organizationThreatGuard, Inc.
    • nameMaria Mikhno
      organizationALTX-SOFT
    descriptionInteger overflow in imgbmp.cxx for Windows 2000 allows remote attackers to execute arbitrary code via a BMP image with a large bfOffBits value.
    familywindows
    idoval:org.mitre.oval:def:515
    statusaccepted
    submitted2004-07-30T12:00:00.000-04:00
    titleIE v5.01,SP2 Bitmap Integer Overflow Vulnerability
    version67