CVE-2006-3445

Microsoft Agent Remote Code Execution via .ACF File Integer Overflow

Title source: llm
STIX 2.1

Description

Integer overflow in the ReadWideString function in agentdpv.dll in Microsoft Agent on Microsoft Windows 2000 SP4, XP SP2, and Server 2003 up to SP1 allows remote attackers to execute arbitrary code via a large length value in an .ACF file, which results in a heap-based buffer overflow.

References (11)

Core 11
Core References
US Government Resource third-party-advisory x_refsource_cert
http://www.us-cert.gov/cas/techalerts/TA06-318A.html
Vendor Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2006/4506
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/22878
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/21034
US Government Resource third-party-advisory x_refsource_cert-vn
http://www.kb.cert.org/vuls/id/810772
Third Party Advisory, VDB Entry mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/458558/100/0/threaded
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/29945
Third Party Advisory, VDB Entry vdb-entry signature x_refsource_oval
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A154
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://securitytracker.com/id?1017222
Various Sources x_refsource_misc
http://www.coseinc.com/alert.html

Scores

EPSS 0.4014
EPSS Percentile 98.5%

Details

CWE
CWE-189
Status published
Products (6)
microsoft/windows_2000
microsoft/windows_2003_server 64-bit
microsoft/windows_2003_server itanium
microsoft/windows_2003_server r2
microsoft/windows_2003_server sp1 (2 CPE variants)
microsoft/windows_xp (2 CPE variants)
Published Nov 14, 2006
Tracked Since Feb 18, 2026