Vulnerabilities > CVE-2007-5133 - Resource Management Errors vulnerability in multiple products

047910
CVSS 7.1 - HIGH
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
COMPLETE
network
microsoft
3ware
CWE-399
exploit available

Summary

Microsoft Windows Explorer (explorer.exe) allows user-assisted remote attackers to cause a denial of service (CPU consumption) via a certain PNG file with a large tEXt chunk that possibly triggers an integer overflow in PNG chunk size handling, as demonstrated by badlycrafted.png.

Common Weakness Enumeration (CWE)

Exploit-Db

descriptionMicrosoft Windows Explorer PNG Image Local Denial Of Service Vulnerability. CVE-2007-5133. Dos exploit for windows platform
idEDB-ID:30619
last seen2016-02-03
modified2007-07-26
published2007-07-26
reporterXavier Roche
sourcehttps://www.exploit-db.com/download/30619/
titleMicrosoft Windows Explorer PNG Image - Local Denial Of Service Vulnerability