CVE-2005-3172

Microsoft Windows 2000 <Update Rollup 1 for SP4 - Buffer Overflow

Title source: llm
STIX 2.1

Description

The WideCharToMultiByte function in Microsoft Windows 2000 before Update Rollup 1 for SP4 does not properly convert strings with Japanese composite characters in the last character, which could prevent the string from being null terminated and lead to data corruption or enable buffer overflow attacks.

References (2)

Core 2
Core References
Patch, Vendor Advisory vendor-advisory x_refsource_mskb
http://support.microsoft.com/kb/824867
Patch, Vendor Advisory vendor-advisory x_refsource_mskb
http://support.microsoft.com/kb/900345

Scores

EPSS 0.0508
EPSS Percentile 91.5%

Details

Status published
Products (1)
microsoft/windows_2000
Published Oct 06, 2005
Tracked Since Feb 18, 2026