CVE-2006-5758

EXPLOITED

Microsoft Windows 2000 - Memory Corruption

Title source: rule

Description

The Graphics Rendering Engine in Microsoft Windows 2000 through 2000 SP4 and Windows XP through SP2 maps GDI Kernel structures on a global shared memory section that is mapped with read-only permissions, but can be remapped by other processes as read-write, which allows local users to cause a denial of service (memory corruption and crash) and gain privileges by modifying the kernel structures.

Exploits (3)

exploitdb WORKING POC
remotewindows
https://www.exploit-db.com/exploits/3804
exploitdb WORKING POC
clocalwindows
https://www.exploit-db.com/exploits/3688
exploitdb WORKING POC
clocalwindows
https://www.exploit-db.com/exploits/3755

Scores

EPSS 0.0076
EPSS Percentile 73.1%

Exploitation Intel

VulnCheck KEV 2008-09-26

Classification

CWE
CWE-119
Status draft

Affected Products (4)

microsoft/windows_2000
microsoft/windows_xp
microsoft/windows_xp
microsoft/windows_xp

Timeline

Published Nov 06, 2006
Tracked Since Feb 18, 2026