imPC@ndo IT

Tracker / CVE-2007-1765

CVE-2007-1765

High 9.3

Unspecified vulnerability in Microsoft Windows 2000 SP4 through Vista allows remote attackers to execute arbitrary code or cause a denial of service (persistent reboot) via a malformed ANI file, which results in memory corruption when processing cursors, animated cursors, and icons, a similar issue to CVE-2005-0416, as originally demonstrated using Internet Explorer 6 and 7. NOTE: this issue might be a duplicate of CVE-2007-0038; if so, then use CVE-2007-0038 instead of this identifier.

Affected products and versions

avaya definity_one_media_server
avaya ip600_media_servers
avaya s3400
avaya s8100
microsoft ie
microsoft internet_explorer · … → 6
microsoft windows_2000
microsoft windows_2003_server
microsoft windows_vista
microsoft windows_xp

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References