cve/2005/CVE-2005-0416.md

20 lines
876 B
Markdown
Raw Normal View History

2024-05-26 14:27:05 +02:00
### [CVE-2005-0416](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-0416)
![](https://img.shields.io/static/v1?label=Product&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Vulnerability&message=n%2Fa&color=brighgreen)
### Description
The Windows Animated Cursor (ANI) capability in Windows NT, Windows 2000 through SP4, Windows XP through SP1, and Windows 2003 allows remote attackers to execute arbitrary code via the AnimationHeaderBlock length field, which leads to a stack-based buffer overflow.
### POC
#### Reference
- http://marc.info/?l=bugtraq&m=110556975827760&w=2
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2005/ms05-002
#### Github
2024-05-27 13:12:02 +00:00
- https://github.com/Cruxer8Mech/Idk
2024-05-26 14:27:05 +02:00
- https://github.com/ycdxsb/WindowsPrivilegeEscalation