CVE Vulnerabilities

CVE-2008-1438

Published: May 13, 2008 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Unspecified vulnerability in Microsoft Malware Protection Engine (mpengine.dll) 1.1.3520.0 and 0.1.13.192, as used in multiple Microsoft products, allows context-dependent attackers to cause a denial of service (disk space exhaustion) via a file with crafted data structures that trigger the creation of large temporary files, a different vulnerability than CVE-2008-1437.

Affected Software

NameVendorStart VersionEnd Version
Antigen_for_exchangeMicrosoft**
Antigen_for_smtp_gatewayMicrosoft**
Diagnostics_and_recovery_toolkitMicrosoft6.0 (including)6.0 (including)
Forefront_client_securityMicrosoft**
Forefront_security_for_exchange_serverMicrosoft**
Forefront_security_for_sharepointMicrosoft**
Malware_protection_engineMicrosoft0.1.13.192 (including)0.1.13.192 (including)
Malware_protection_engineMicrosoft1.1.3520.0 (including)1.1.3520.0 (including)
Windows_defenderMicrosoft**
Windows_live_onecareMicrosoft**

References