CVE-2009-1808

Microsoft Windows XP - Denial of Service

Title source: rule

Description

Microsoft Windows XP SP3 allows local users to cause a denial of service (system crash) by making an SPI_SETDESKWALLPAPER SystemParametersInfo call with an improperly terminated pvParam argument, followed by an SPI_GETDESKWALLPAPER SystemParametersInfo call.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Arkon · clocalwindows
https://www.exploit-db.com/exploits/33012

Scores

EPSS 0.0093
EPSS Percentile 76.1%

Details

Status published
Products (1)
microsoft/windows_xp (6 CPE variants)
Published May 28, 2009
Tracked Since Feb 18, 2026