CVE-2006-0020

Microsoft Windows - Denial of Service and Possible Remote Code Execution via Crafted WMF File

Title source: llm
STIX 2.1

Description

An unspecified Microsoft WMF parsing application, as used in Internet Explorer 5.01 SP4 on Windows 2000 SP4, and 5.5 SP2 on Windows Millennium, and possibly other versions, allows attackers to cause a denial of service (crash) and possibly execute code via a crafted WMF file with a manipulated WMF header size, possibly involving an integer overflow, a different vulnerability than CVE-2005-4560, and aka "WMF Image Parsing Memory Corruption Vulnerability."

References (11)

Core 11
Core References
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/18912
Exploit, Vendor Advisory mailing-list x_refsource_mlist
http://linuxbox.org/pipermail/funsec/2006-January/002828.html
Third Party Advisory, VDB Entry vdb-entry signature x_refsource_oval
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1638
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/22976
Patch, Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/18729
Patch, Third Party Advisory, US Government Resource third-party-advisory x_refsource_cert-vn
http://www.kb.cert.org/vuls/id/312956
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2006/0469
Third Party Advisory, US Government Resource third-party-advisory x_refsource_cert
http://www.us-cert.gov/cas/techalerts/TA06-045A.html
Patch vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/16516

Scores

EPSS 0.1906
EPSS Percentile 97.0%

Details

CWE
CWE-189
Status published
Products (7)
microsoft/windows_2000
microsoft/windows_2003_server r2
microsoft/windows_2003_server sp1
microsoft/windows_98
microsoft/windows_98se
microsoft/windows_me
microsoft/windows_xp (2 CPE variants)
Published Jan 10, 2006
Tracked Since Feb 18, 2026