View Definition
| Definition Id: oval:org.mitre.oval:def:381 | Version: 5 Last Modified: 2011-04-26 | ||
| Title: | Server 2003 HTML Help Remote Code Execution Vulnerability | ||
| Description: | Integer overflow in Microsoft Windows 98, 2000, XP SP2 and earlier, and Server 2003 SP1 and earlier allows remote attackers to execute arbitrary code via a crafted compiled Help (.CHM) file with a large size field that triggers a heap-based buffer overflow, as demonstrated using a "ms-its:" URL in Internet Explorer. | ||
| Family: | windows | Class: | vulnerability |
| Status: | ACCEPTED | Reference(s): |
CVE-2005-1208
|
| Platform(s): | Microsoft Windows Server 2003 | Product(s): | HTML Help Facility |
| Definition Synopsis: | |||
|
|||

