Open Vulnerability and Assessment Language (OVAL)
Contact Us Downloads News July 2, 2009 Search
link to OVAL home page

View Definition

Definition Id: oval:org.mitre.oval:def:1515 Date: 2009-05-07
Title: Buffer Overflow in CDOSYS Message Processing (WinXP,SP2)
Description: Buffer overflow in Collaboration Data Objects (CDO), as used in Microsoft Windows and Microsoft Exchange Server, allows remote attackers to execute arbitrary code when CDOSYS or CDOEX processes an e-mail message with a large header name, as demonstrated using the "Content-Type" string.
Version: 2 Class: vulnerability
Status: ACCEPTED Reference(s): CVE-2005-1987
Family: windows
Platform(s): Microsoft Windows XP Product(s): Operating System
Definition Synopsis:

OVAL is CVE Compatible