CVE Vulnerabilities

CVE-2003-0717

Published: Nov 17, 2003 | Modified: Apr 30, 2019
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

The Messenger Service for Windows NT through Server 2003 does not properly verify the length of the message, which allows remote attackers to execute arbitrary code via a buffer overflow attack.

Affected Software

Name Vendor Start Version End Version
Windows_2000 Microsoft * *
Windows_2003_server Microsoft enterprise (including) enterprise (including)
Windows_2003_server Microsoft enterprise_64-bit (including) enterprise_64-bit (including)
Windows_2003_server Microsoft r2 (including) r2 (including)
Windows_2003_server Microsoft standard (including) standard (including)
Windows_2003_server Microsoft web (including) web (including)
Windows_me Microsoft * *
Windows_nt Microsoft 4.0 (including) 4.0 (including)
Windows_nt Microsoft 4.0-sp1 (including) 4.0-sp1 (including)
Windows_nt Microsoft 4.0-sp2 (including) 4.0-sp2 (including)
Windows_nt Microsoft 4.0-sp3 (including) 4.0-sp3 (including)
Windows_nt Microsoft 4.0-sp4 (including) 4.0-sp4 (including)
Windows_nt Microsoft 4.0-sp5 (including) 4.0-sp5 (including)
Windows_nt Microsoft 4.0-sp6 (including) 4.0-sp6 (including)
Windows_nt Microsoft 4.0-sp6a (including) 4.0-sp6a (including)
Windows_xp Microsoft * *

References