CVE-2009-2495

MEDIUM

Microsoft Visual Studio .NET 2003-2008 - Info Disclosure

Title source: llm
STIX 2.1

Description

The Active Template Library (ATL) in Microsoft Visual Studio .NET 2003 SP1, Visual Studio 2005 SP1 and 2008 Gold and SP1, and Visual C++ 2005 SP1 and 2008 Gold and SP1 does not properly enforce string termination, which allows remote attackers to obtain sensitive information via a crafted HTML document with an ATL (1) component or (2) control that triggers a buffer over-read, related to ATL headers and buffer allocation, aka "ATL Null String Vulnerability."

References (16)

Core 16
Core References
Vendor Advisory vendor-advisory x_refsource_sunalert
http://sunsolve.sun.com/search/document.do?assetkey=1-66-266108-1
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2009/2034
Third Party Advisory, VDB Entry vdb-entry signature x_refsource_oval
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A7573
Third Party Advisory, VDB Entry vdb-entry signature x_refsource_oval
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6478
US Government Resource third-party-advisory x_refsource_cert
http://www.us-cert.gov/cas/techalerts/TA09-286A.html
Third Party Advisory, VDB Entry vdb-entry signature x_refsource_oval
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6305
Mailing List vendor-advisory x_refsource_hp
http://marc.info/?l=bugtraq&m=126592505426855&w=2
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/36374
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/36746
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/35967
US Government Resource third-party-advisory x_refsource_cert
http://www.us-cert.gov/cas/techalerts/TA09-195A.html

Scores

CVSS v3 6.5
EPSS 0.4187
EPSS Percentile 98.5%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-126 CWE-200
Status published
Products (5)
microsoft/visual_c\+\+ 2005 sp1_redistribution_pkg
microsoft/visual_c\+\+ 2008 redistribution_pkg (2 CPE variants)
microsoft/visual_studio 2005 sp1 (2 CPE variants)
microsoft/visual_studio 2008 (2 CPE variants)
microsoft/visual_studio_.net 2003 sp1
Published Jul 29, 2009
Tracked Since Feb 18, 2026