7.5
CVSSv2

CVE-2006-0143

Published: 09/01/2006 Updated: 30/04/2019
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Microsoft Windows Graphics Rendering Engine (GRE) allows remote malicious users to corrupt memory and cause a denial of service (crash) via a WMF file containing (1) ExtCreateRegion or (2) ExtEscape function calls with arguments with inconsistent lengths.

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft windows 2000

microsoft windows 2003 server enterprise_64-bit

microsoft windows 2003 server r2

microsoft windows me

microsoft windows xp

microsoft windows 2003 server datacenter_64-bit

microsoft windows 2003 server enterprise

microsoft windows 2003 server standard

microsoft windows 98

microsoft windows 98se

microsoft windows 2003 server standard_64-bit

microsoft windows 2003 server web

Exploits

source: wwwsecurityfocuscom/bid/16167/info Microsoft Windows WMF graphics-rendering engine is affected by multiple memory-corruption vulnerabilities These issues affect the 'ExtCreateRegion' and 'ExtEscape' functions These problems present themselves when a user views a malicious WMF-formatted file containing specially crafted data R ...