Executive Summary
Informations | |||
---|---|---|---|
Name | CVE-2004-1305 | First vendor Publication | 2004-12-23 |
Vendor | Cve | Last vendor Modification | 2024-11-20 |
Security-Database Scoring CVSS v3
Cvss vector : N/A | |||
---|---|---|---|
Overall CVSS Score | NA | ||
Base Score | NA | Environmental Score | NA |
impact SubScore | NA | Temporal Score | NA |
Exploitabality Sub Score | NA | ||
Calculate full CVSS 3.0 Vectors scores |
Security-Database Scoring CVSS v2
Cvss vector : (AV:N/AC:L/Au:N/C:N/I:N/A:P) | |||
---|---|---|---|
Cvss Base Score | 5 | Attack Range | Network |
Cvss Impact Score | 2.9 | Attack Complexity | Low |
Cvss Expoit Score | 10 | Authentication | None Required |
Calculate full CVSS 2.0 Vectors scores |
Detail
The Windows Animated Cursor (ANI) capability in Windows NT, Windows 2000 through SP4, Windows XP through SP1, and Windows 2003 allow remote attackers to cause a denial of service via (1) the frame number set to zero, which causes an invalid memory address to be used and leads to a kernel crash, or (2) the rate number set to zero, which leads to resource exhaustion and hang. |
Original Source
Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-1305 |
OVAL Definitions
Definition Id: oval:org.mitre.oval:def:1304 | |||
Oval ID: | oval:org.mitre.oval:def:1304 | ||
Title: | Animated Cursor Denial of Service (XP) | ||
Description: | The Windows Animated Cursor (ANI) capability in Windows NT, Windows 2000 through SP4, Windows XP through SP1, and Windows 2003 allow remote attackers to cause a denial of service via (1) the frame number set to zero, which causes an invalid memory address to be used and leads to a kernel crash, or (2) the rate number set to zero, which leads to resource exhaustion and hang. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2004-1305 | Version: | 5 |
Platform(s): | Microsoft Windows XP | Product(s): | Windows Animated Cursor |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:2580 | |||
Oval ID: | oval:org.mitre.oval:def:2580 | ||
Title: | Animated Cursor Denial of Service (Server 2003) | ||
Description: | The Windows Animated Cursor (ANI) capability in Windows NT, Windows 2000 through SP4, Windows XP through SP1, and Windows 2003 allow remote attackers to cause a denial of service via (1) the frame number set to zero, which causes an invalid memory address to be used and leads to a kernel crash, or (2) the rate number set to zero, which leads to resource exhaustion and hang. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2004-1305 | Version: | 2 |
Platform(s): | Microsoft Windows Server 2003 | Product(s): | Windows Animated Cursor |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:3216 | |||
Oval ID: | oval:org.mitre.oval:def:3216 | ||
Title: | Animated Cursor Denial of Service (Windows 2000) | ||
Description: | The Windows Animated Cursor (ANI) capability in Windows NT, Windows 2000 through SP4, Windows XP through SP1, and Windows 2003 allow remote attackers to cause a denial of service via (1) the frame number set to zero, which causes an invalid memory address to be used and leads to a kernel crash, or (2) the rate number set to zero, which leads to resource exhaustion and hang. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2004-1305 | Version: | 8 |
Platform(s): | Microsoft Windows 2000 | Product(s): | Windows Animated Cursor |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:3957 | |||
Oval ID: | oval:org.mitre.oval:def:3957 | ||
Title: | Animated Cursor Denial of Service (NT 4.0 Terminal Server) | ||
Description: | The Windows Animated Cursor (ANI) capability in Windows NT, Windows 2000 through SP4, Windows XP through SP1, and Windows 2003 allow remote attackers to cause a denial of service via (1) the frame number set to zero, which causes an invalid memory address to be used and leads to a kernel crash, or (2) the rate number set to zero, which leads to resource exhaustion and hang. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2004-1305 | Version: | 3 |
Platform(s): | Microsoft Windows NT | Product(s): | Windows Animated Cursor |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:712 | |||
Oval ID: | oval:org.mitre.oval:def:712 | ||
Title: | Animated Cursor Denial of Service (NT 4.0) | ||
Description: | The Windows Animated Cursor (ANI) capability in Windows NT, Windows 2000 through SP4, Windows XP through SP1, and Windows 2003 allow remote attackers to cause a denial of service via (1) the frame number set to zero, which causes an invalid memory address to be used and leads to a kernel crash, or (2) the rate number set to zero, which leads to resource exhaustion and hang. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2004-1305 | Version: | 4 |
Platform(s): | Microsoft Windows NT | Product(s): | Windows Animated Cursor |
Definition Synopsis: | |||
|
CPE : Common Platform Enumeration
ExploitDB Exploits
id | Description |
---|---|
2010-08-12 | Windows ANI LoadAniIcon() Chunk Size Stack Buffer Overflow (HTTP) |
2005-01-24 | MS Internet Explorer .ANI files handling Downloader Exploit (MS05-002) |
2005-01-22 | MS Internet Explorer .ANI files handling Universal Exploit (MS05-002) |
2005-01-12 | MS Internet Explorer .ANI Remote Stack Overflow (0.2) |
Open Source Vulnerability Database (OSVDB)
Id | Description |
---|---|
12624 | Microsoft Windows Kernel ANI File Parsing DoS Windows contains a flaw that may allow a local denial of service. The issue is triggered when an ANI file containing the rate number or frame number set to '0' in the file header is opened, and will result in loss of availability for the platform. |
Information Assurance Vulnerability Management (IAVM)
Date | Description |
---|---|
2005-01-19 | IAVM : 2005-A-0001 - Multiple Vulnerabilities in Microsoft Windows Severity : Category I - VMSKEY : V0005996 |
Snort® IPS/IDS
Date | Description |
---|---|
2014-01-10 | Microsoft Internet Explorer ANI file parsing buffer overflow attempt RuleID : 3079-community - Revision : 25 - Type : BROWSER-IE |
2014-01-10 | Microsoft Internet Explorer ANI file parsing buffer overflow attempt RuleID : 3079 - Revision : 25 - Type : BROWSER-IE |
Nessus® Vulnerability Scanner
Date | Description |
---|---|
2005-01-11 | Name : Arbitrary code can be executed on the remote host through the web or email cl... File : smb_nt_ms05-002.nasl - Type : ACT_GATHER_INFO |
Sources (Detail)
Alert History
Date | Informations |
---|---|
2024-11-28 23:22:51 |
|
2024-11-28 12:06:19 |
|
2024-08-02 12:02:55 |
|
2024-08-02 01:01:34 |
|
2024-02-02 01:02:40 |
|
2024-02-01 12:01:35 |
|
2023-09-05 12:02:32 |
|
2023-09-05 01:01:26 |
|
2023-09-02 12:02:34 |
|
2023-09-02 01:01:26 |
|
2023-08-12 12:03:05 |
|
2023-08-12 01:01:27 |
|
2023-08-11 12:02:40 |
|
2023-08-11 01:01:28 |
|
2023-08-06 12:02:28 |
|
2023-08-06 01:01:27 |
|
2023-08-04 12:02:32 |
|
2023-08-04 01:01:28 |
|
2023-07-14 12:02:30 |
|
2023-07-14 01:01:28 |
|
2023-03-29 01:02:32 |
|
2023-03-28 12:01:33 |
|
2022-10-11 12:02:14 |
|
2022-10-11 01:01:20 |
|
2021-05-04 12:02:29 |
|
2021-04-22 01:02:40 |
|
2020-05-23 00:15:59 |
|
2019-05-09 12:01:25 |
|
2019-04-30 21:19:18 |
|
2018-10-13 00:22:30 |
|
2017-10-11 09:23:25 |
|
2017-07-11 12:01:35 |
|
2016-10-18 12:01:25 |
|
2016-04-26 12:57:52 |
|
2014-02-17 10:28:39 |
|
2013-11-11 12:37:35 |
|
2013-05-11 11:44:42 |
|