Record summary

CVE-2008-2245 has a selected CVSS score of 9.3; EIP currently links 1 catalogued exploit.

Description

Heap-based buffer overflow in the InternalOpenColorProfile function in mscms.dll in Microsoft Windows Image Color Management System (MSCMS) in the Image Color Management (ICM) component on Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP1 and SP2 allows remote attackers to execute arbitrary code via a crafted image file.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
1

Proofs of concept

1

Catalogued exploits

ExploitDBMicrosoft Windows - InternalOpenColorProfile Heap Overflow (PoC) (MS08-046)ExploitDB exploitby Ac!dDropNot analyzed1 file
ExploitDB

PoC details

References

12