CVE-2006-0020
Microsoft Windows - Denial of Service and Possible Remote Code Execution via Crafted WMF File
Title source: llmDescription
An unspecified Microsoft WMF parsing application, as used in Internet Explorer 5.01 SP4 on Windows 2000 SP4, and 5.5 SP2 on Windows Millennium, and possibly other versions, allows attackers to cause a denial of service (crash) and possibly execute code via a crafted WMF file with a manipulated WMF header size, possibly involving an integer overflow, a different vulnerability than CVE-2005-4560, and aka "WMF Image Parsing Memory Corruption Vulnerability."
References (11)
Core 11
Core References
Vendor Advisory third-party-advisory
x_refsource_secunia
http://secunia.com/advisories/18912
Exploit, Vendor Advisory mailing-list
x_refsource_mlist
http://linuxbox.org/pipermail/funsec/2006-January/002828.html
Third Party Advisory, VDB Entry vdb-entry
signature
x_refsource_oval
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1638
Third Party Advisory, VDB Entry vdb-entry
x_refsource_osvdb
http://www.osvdb.org/22976
Patch, Vendor Advisory third-party-advisory
x_refsource_secunia
http://secunia.com/advisories/18729
Vendor Advisory x_refsource_confirm
http://www.microsoft.com/technet/security/advisory/913333.mspx
Patch, Third Party Advisory, US Government Resource third-party-advisory
x_refsource_cert-vn
http://www.kb.cert.org/vuls/id/312956
Third Party Advisory vdb-entry
x_refsource_vupen
http://www.vupen.com/english/advisories/2006/0469
Third Party Advisory, US Government Resource third-party-advisory
x_refsource_cert
http://www.us-cert.gov/cas/techalerts/TA06-045A.html
Patch vdb-entry
x_refsource_bid
http://www.securityfocus.com/bid/16516
Vendor Advisory vendor-advisory
x_refsource_ms
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2006/ms06-004
Scores
EPSS
0.1906
EPSS Percentile
97.0%
Details
CWE
CWE-189
Status
published
Products (7)
microsoft/windows_2000
microsoft/windows_2003_server
r2
microsoft/windows_2003_server
sp1
microsoft/windows_98
microsoft/windows_98se
microsoft/windows_me
microsoft/windows_xp
(2 CPE variants)
Published
Jan 10, 2006
Tracked Since
Feb 18, 2026