5.1
CVSSv2

CVE-2004-1049

Published: 31/12/2004 Updated: 12/10/2018
CVSS v2 Base Score: 5.1 | Impact Score: 6.4 | Exploitability Score: 4.9
VMScore: 454
Vector: AV:N/AC:H/Au:N/C:P/I:P/A:P

Vulnerability Summary

Integer overflow in the LoadImage API of the USER32 Lib for Microsoft Windows allows remote malicious users to execute arbitrary code via a .bmp, .cur, .ico or .ani file with a large image size field, which leads to a buffer overflow, aka the "Cursor and Icon Format Handling Vulnerability."

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft windows 2000

microsoft windows xp

microsoft windows nt

microsoft windows 2003 server r2