CVE-2006-5758

EXPLOITED

Microsoft Windows 2000 - Memory Corruption

Title source: rule

Description

The Graphics Rendering Engine in Microsoft Windows 2000 through 2000 SP4 and Windows XP through SP2 maps GDI Kernel structures on a global shared memory section that is mapped with read-only permissions, but can be remapped by other processes as read-write, which allows local users to cause a denial of service (memory corruption and crash) and gain privileges by modifying the kernel structures.

Exploits (3)

exploitdb WORKING POC
remotewindows
https://www.exploit-db.com/exploits/3804
exploitdb WORKING POC
clocalwindows
https://www.exploit-db.com/exploits/3755
exploitdb WORKING POC
clocalwindows
https://www.exploit-db.com/exploits/3688

Scores

EPSS 0.0097
EPSS Percentile 76.6%

Details

VulnCheck KEV 2008-09-26
CWE
CWE-119
Status published
Products (2)
microsoft/windows_2000
microsoft/windows_xp (3 CPE variants)
Published Nov 06, 2006
Tracked Since Feb 18, 2026