Описание
The POSIX component of Microsoft Windows NT and Windows 2000 allows local users to execute arbitrary code via certain parameters, possibly by modifying message length values and causing a buffer overflow.
Ссылки
- PatchThird Party AdvisoryUS Government Resource
- Broken LinkPatchThird Party AdvisoryUS Government Resource
- PatchVendor Advisory
- Third Party AdvisoryVDB Entry
- Broken Link
- Broken Link
- PatchThird Party AdvisoryUS Government Resource
- Broken LinkPatchThird Party AdvisoryUS Government Resource
- PatchVendor Advisory
- Third Party AdvisoryVDB Entry
- Broken Link
- Broken Link
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:microsoft:interix:2.2:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_2000:-:sp2:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_2000:-:sp3:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_2000:-:sp4:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_nt:4.0:sp6a:*:*:server:*:*:*
cpe:2.3:o:microsoft:windows_nt:4.0:sp6a:*:*:terminal_server:*:*:*
cpe:2.3:o:microsoft:windows_nt:4.0:sp6a:*:*:workstation:*:*:*
EPSS
Процентиль: 90%
0.05878
Низкий
7.8 High
CVSS3
7.2 High
CVSS2
Дефекты
CWE-120
CWE-120
Связанные уязвимости
CVSS3: 7.8
github
больше 3 лет назад
The POSIX component of Microsoft Windows NT and Windows 2000 allows local users to execute arbitrary code via certain parameters, possibly by modifying message length values and causing a buffer overflow.
EPSS
Процентиль: 90%
0.05878
Низкий
7.8 High
CVSS3
7.2 High
CVSS2
Дефекты
CWE-120
CWE-120