9.3
CVSSv2

CVE-2011-0041

Published: 13/04/2011 Updated: 07/12/2023
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 935
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Integer overflow in gdiplus.dll in GDI+ in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP1 and SP2, Windows Server 2008 Gold and SP2, and Office XP SP3 allows remote malicious users to execute arbitrary code via a crafted EMF image, aka "GDI+ Integer Overflow Vulnerability."

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft windows server 2008

microsoft windows server 2008 -

microsoft windows xp -

microsoft windows xp

microsoft windows vista

microsoft windows server 2003

microsoft windows 2003 server

microsoft office xp

Exploits

Abysssec Research 1) Advisory information Title : GDI+ CreateDashedPath Integer overflow in gdiplusdll Discovery : Nicolas july from vupen Analysis : Abyssseccom Vendor : wwwmicrosoftcom Impact : High Contact : info [at] abyssseccom Twitter : @ ...