CVE-2006-3445
Microsoft Agent Remote Code Execution via .ACF File Integer Overflow
Title source: llmDescription
Integer overflow in the ReadWideString function in agentdpv.dll in Microsoft Agent on Microsoft Windows 2000 SP4, XP SP2, and Server 2003 up to SP1 allows remote attackers to execute arbitrary code via a large length value in an .ACF file, which results in a heap-based buffer overflow.
References (11)
Core 11
Core References
US Government Resource third-party-advisory
x_refsource_cert
http://www.us-cert.gov/cas/techalerts/TA06-318A.html
Vendor Advisory vdb-entry
x_refsource_vupen
http://www.vupen.com/english/advisories/2006/4506
Vendor Advisory third-party-advisory
x_refsource_secunia
http://secunia.com/advisories/22878
Third Party Advisory, VDB Entry vdb-entry
x_refsource_bid
http://www.securityfocus.com/bid/21034
US Government Resource third-party-advisory
x_refsource_cert-vn
http://www.kb.cert.org/vuls/id/810772
Third Party Advisory, VDB Entry mailing-list
x_refsource_bugtraq
http://www.securityfocus.com/archive/1/458558/100/0/threaded
Third Party Advisory, VDB Entry vdb-entry
x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/29945
Vendor Advisory vendor-advisory
x_refsource_ms
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2006/ms06-068
Third Party Advisory, VDB Entry vdb-entry
signature
x_refsource_oval
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A154
Third Party Advisory, VDB Entry vdb-entry
x_refsource_sectrack
http://securitytracker.com/id?1017222
Various Sources x_refsource_misc
http://www.coseinc.com/alert.html
Scores
EPSS
0.4014
EPSS Percentile
98.5%
Details
CWE
CWE-189
Status
published
Products (6)
microsoft/windows_2000
microsoft/windows_2003_server
64-bit
microsoft/windows_2003_server
itanium
microsoft/windows_2003_server
r2
microsoft/windows_2003_server
sp1 (2 CPE variants)
microsoft/windows_xp
(2 CPE variants)
Published
Nov 14, 2006
Tracked Since
Feb 18, 2026