Vulnerabilities > CVE-2006-3445 - Numeric Errors vulnerability in Microsoft Windows 2000, Windows 2003 Server and Windows XP
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
Integer overflow in the ReadWideString function in agentdpv.dll in Microsoft Agent on Microsoft Windows 2000 SP4, XP SP2, and Server 2003 up to SP1 allows remote attackers to execute arbitrary code via a large length value in an .ACF file, which results in a heap-based buffer overflow.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
OS | 8 |
Common Weakness Enumeration (CWE)
Nessus
NASL family | Windows : Microsoft Bulletins |
NASL id | SMB_NT_MS06-068.NASL |
description | The remote version of Windows contains a flaw in the Microsoft Agent service that could allow an attacker to execute arbitrary code on the remote host. To exploit this flaw, an attacker would need to set up a rogue website and lure a victim on the remote host into visiting it or have him load a malformed .ACF file. |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 23645 |
published | 2006-11-14 |
reporter | This script is Copyright (C) 2006-2018 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/23645 |
title | MS06-068: Vulnerability in Microsoft Agent Could Remote Code Execution (920213) |
Oval
accepted | 2007-02-20T13:39:49.634-05:00 | ||||||||||||||||||||
class | vulnerability | ||||||||||||||||||||
contributors |
| ||||||||||||||||||||
definition_extensions |
| ||||||||||||||||||||
description | Integer overflow in the ReadWideString function in agentdpv.dll in Microsoft Agent on Microsoft Windows 2000 SP4, XP SP2, and Server 2003 up to SP1 allows remote attackers to execute arbitrary code via a large length value in an .ACF file, which results in a heap-based buffer overflow. | ||||||||||||||||||||
family | windows | ||||||||||||||||||||
id | oval:org.mitre.oval:def:154 | ||||||||||||||||||||
status | accepted | ||||||||||||||||||||
submitted | 2006-11-15T12:28:05 | ||||||||||||||||||||
title | Microsoft Agent Memory Corruption Vulnerability | ||||||||||||||||||||
version | 36 |
References
- http://secunia.com/advisories/22878
- http://secunia.com/advisories/22878
- http://securitytracker.com/id?1017222
- http://securitytracker.com/id?1017222
- http://www.coseinc.com/alert.html
- http://www.coseinc.com/alert.html
- http://www.kb.cert.org/vuls/id/810772
- http://www.kb.cert.org/vuls/id/810772
- http://www.securityfocus.com/archive/1/458558/100/0/threaded
- http://www.securityfocus.com/archive/1/458558/100/0/threaded
- http://www.securityfocus.com/bid/21034
- http://www.securityfocus.com/bid/21034
- http://www.us-cert.gov/cas/techalerts/TA06-318A.html
- http://www.us-cert.gov/cas/techalerts/TA06-318A.html
- http://www.vupen.com/english/advisories/2006/4506
- http://www.vupen.com/english/advisories/2006/4506
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2006/ms06-068
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2006/ms06-068
- https://exchange.xforce.ibmcloud.com/vulnerabilities/29945
- https://exchange.xforce.ibmcloud.com/vulnerabilities/29945
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A154
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A154