CVE-2005-2127

EXPLOITED

ATI Catalyst Driver - Memory Corruption

Title source: rule

Description

Microsoft Internet Explorer 5.01, 5.5, and 6 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a web page with embedded CLSIDs that reference certain COM objects that are not intended for use within Internet Explorer, as originally demonstrated using the (1) DDS Library Shape Control (Msdds.dll) COM object, and other objects including (2) Blnmgrps.dll, (3) Ciodm.dll, (4) Comsvcs.dll, (5) Danim.dll, (6) Htmlmarq.ocx, (7) Mdt2dd.dll (as demonstrated using a heap corruption attack with uninitialized memory), (8) Mdt2qd.dll, (9) Mpg4ds32.ax, (10) Msadds32.ax, (11) Msb1esen.dll, (12) Msb1fren.dll, (13) Msb1geen.dll, (14) Msdtctm.dll, (15) Mshtml.dll, (16) Msoeacct.dll, (17) Msosvfbr.dll, (18) Mswcrun.dll, (19) Netshell.dll, (20) Ole2disp.dll, (21) Outllib.dll, (22) Psisdecd.dll, (23) Qdvd.dll, (24) Repodbc.dll, (25) Shdocvw.dll, (26) Shell32.dll, (27) Soa.dll, (28) Srchui.dll, (29) Stobject.dll, (30) Vdt70.dll, (31) Vmhelper.dll, and (32) Wbemads.dll, aka a variant of the "COM Object Instantiation Memory Corruption vulnerability."

Exploits (1)

exploitdb WORKING POC VERIFIED
by anonymous · perlremotewindows
https://www.exploit-db.com/exploits/26167

References (28)

... and 8 more

Scores

EPSS 0.4205
EPSS Percentile 97.4%

Details

VulnCheck KEV 2005-10-11
CWE
CWE-119
Status published
Products (15)
ati/catalyst_driver
microsoft/.net_framework 1.1 (4 CPE variants)
microsoft/office
microsoft/office 2000 (7 CPE variants)
microsoft/office xp sp1 (3 CPE variants)
microsoft/project 98
microsoft/project 2000
microsoft/project 2002 (2 CPE variants)
microsoft/project 2003 (2 CPE variants)
microsoft/visio 2000 sr1
... and 5 more
Published Aug 19, 2005
Tracked Since Feb 18, 2026