CVE-2009-0901

HIGH

Microsoft Visual C++ and Visual Studio - Remote Code Execution via Uninitialized VARIANT in ATL

Title source: llm
STIX 2.1

Description

The Active Template Library (ATL) in Microsoft Visual Studio .NET 2003 SP1, Visual Studio 2005 SP1 and 2008 Gold, and Visual C++ 2005 SP1 and 2008 Gold and SP1; and Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, Vista Gold, SP1, and SP2, and Server 2008 Gold and SP2; does not prevent VariantClear calls on an uninitialized VARIANT, which allows remote attackers to execute arbitrary code via a malformed stream to an ATL (1) component or (2) control, related to ATL headers and error handling, aka "ATL Uninitialized Object Vulnerability."

References (25)

Core 25
Core References
Vendor Advisory vendor-advisory x_refsource_sunalert
http://sunsolve.sun.com/search/document.do?assetkey=1-66-266108-1
Patch vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/35832
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2009/2034
US Government Resource third-party-advisory x_refsource_cert
http://www.us-cert.gov/cas/techalerts/TA09-223A.html
US Government Resource third-party-advisory x_refsource_cert
http://www.us-cert.gov/cas/techalerts/TA09-286A.html
Third Party Advisory, VDB Entry vdb-entry signature x_refsource_oval
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A7581
Third Party Advisory, VDB Entry vdb-entry signature x_refsource_oval
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6289
Mailing List vendor-advisory x_refsource_hp
http://marc.info/?l=bugtraq&m=126592505426855&w=2
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/36187
Third Party Advisory, VDB Entry vdb-entry signature x_refsource_oval
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6311
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2009/2232
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/36374
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/36746
Third Party Advisory, VDB Entry vdb-entry signature x_refsource_oval
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6373
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/35967
US Government Resource third-party-advisory x_refsource_cert
http://www.us-cert.gov/cas/techalerts/TA09-195A.html

Scores

CVSS v3 8.8
EPSS 0.4252
EPSS Percentile 98.5%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-457 CWE-94
Status published
Products (5)
microsoft/visual_c\+\+ 2005 sp1_redistribution_pkg
microsoft/visual_c\+\+ 2008 redistribution_pkg (2 CPE variants)
microsoft/visual_studio 2005 sp1 (2 CPE variants)
microsoft/visual_studio 2008 (2 CPE variants)
microsoft/visual_studio_.net 2003 sp1
Published Jul 29, 2009
Tracked Since Feb 18, 2026