5
CVSSv2

CVE-2004-1623

Published: 22/10/2004 Updated: 11/07/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

The WAV file property handler in Windows XP SP1 allows remote malicious users to cause a denial of service (infinite loop in Explorer) via a WAV file with an invalid file header whose fmt chunk length is set to 0xFFFFFFFF.

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft windows xp

Exploits

source: wwwsecurityfocuscom/bid/11503/info Microsoft Windows XP is reported prone to a denial of service vulnerability The issue exists due to a lack of sufficient sanitization performed on WAV file header values before they are processed If an exploit attempt is successful, the Windows Explorer process will begin to consume CPU resou ...