Executive Summary
Informations | |||
---|---|---|---|
Name | CVE-2005-0551 | First vendor Publication | 2005-05-02 |
Vendor | Cve | Last vendor Modification | 2024-11-20 |
Security-Database Scoring CVSS v3
Cvss vector : N/A | |||
---|---|---|---|
Overall CVSS Score | NA | ||
Base Score | NA | Environmental Score | NA |
impact SubScore | NA | Temporal Score | NA |
Exploitabality Sub Score | NA | ||
Calculate full CVSS 3.0 Vectors scores |
Security-Database Scoring CVSS v2
Cvss vector : (AV:N/AC:L/Au:N/C:C/I:C/A:C) | |||
---|---|---|---|
Cvss Base Score | 10 | Attack Range | Network |
Cvss Impact Score | 10 | Attack Complexity | Low |
Cvss Expoit Score | 10 | Authentication | None Required |
Calculate full CVSS 2.0 Vectors scores |
Detail
Stack-based buffer overflow in WINSRV.DLL in the Client Server Runtime System (CSRSS) process of Microsoft Windows 2000, Windows XP SP1 and SP2, and Windows Server 2003 allows local users to gain privileges via a specially-designed application that provides console window information with a long FaceName value. |
Original Source
Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-0551 |
OVAL Definitions
Definition Id: oval:org.mitre.oval:def:1822 | |||
Oval ID: | oval:org.mitre.oval:def:1822 | ||
Title: | Server 2003 CSRSS Privilege Escalation Vulnerability | ||
Description: | Stack-based buffer overflow in WINSRV.DLL in the Client Server Runtime System (CSRSS) process of Microsoft Windows 2000, Windows XP SP1 and SP2, and Windows Server 2003 allows local users to gain privileges via a specially-designed application that provides console window information with a long FaceName value. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2005-0551 | Version: | 1 |
Platform(s): | Microsoft Windows Server 2003 | Product(s): | Client Server Runtime System (CSRSS) |
Definition Synopsis: | |||
Definition Id: oval:org.mitre.oval:def:266 | |||
Oval ID: | oval:org.mitre.oval:def:266 | ||
Title: | Windows XP (SP2) CSRSS Privilege Escalation Vulnerability | ||
Description: | Stack-based buffer overflow in WINSRV.DLL in the Client Server Runtime System (CSRSS) process of Microsoft Windows 2000, Windows XP SP1 and SP2, and Windows Server 2003 allows local users to gain privileges via a specially-designed application that provides console window information with a long FaceName value. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2005-0551 | Version: | 5 |
Platform(s): | Microsoft Windows XP | Product(s): | Client Server Runtime System (CSRSS) |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:3544 | |||
Oval ID: | oval:org.mitre.oval:def:3544 | ||
Title: | Windows XP CSRSS Privilege Escalation Vulnerability | ||
Description: | Stack-based buffer overflow in WINSRV.DLL in the Client Server Runtime System (CSRSS) process of Microsoft Windows 2000, Windows XP SP1 and SP2, and Windows Server 2003 allows local users to gain privileges via a specially-designed application that provides console window information with a long FaceName value. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2005-0551 | Version: | 6 |
Platform(s): | Microsoft Windows XP | Product(s): | Client Server Runtime System (CSRSS) |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:777 | |||
Oval ID: | oval:org.mitre.oval:def:777 | ||
Title: | Windows 2000 CSRSS Privilege Escalation Vulnerability | ||
Description: | Stack-based buffer overflow in WINSRV.DLL in the Client Server Runtime System (CSRSS) process of Microsoft Windows 2000, Windows XP SP1 and SP2, and Windows Server 2003 allows local users to gain privileges via a specially-designed application that provides console window information with a long FaceName value. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2005-0551 | Version: | 6 |
Platform(s): | Microsoft Windows 2000 | Product(s): | Client Server Runtime System (CSRSS) |
Definition Synopsis: | |||
CPE : Common Platform Enumeration
Type | Description | Count |
---|---|---|
Os | 1 | |
Os | 1 | |
Os | 2 |
ExploitDB Exploits
id | Description |
---|---|
2005-09-06 | MS Windows CSRSS Local Privilege Escalation Exploit (MS05-018) |
Open Source Vulnerability Database (OSVDB)
Id | Description |
---|---|
15462 | Microsoft Windows CSRSS Local Overflow A local overflow exists in Windows. WINSVR.DLL fails to validate values within the CONSOLE_STATE_INFO struct resulting in a buffer overflow. With a specially crafted request, an attacker can cause arbitrary code execution resulting in a loss of integrity. |
Information Assurance Vulnerability Management (IAVM)
Date | Description |
---|---|
2005-01-19 | IAVM : 2005-A-0001 - Multiple Vulnerabilities in Microsoft Windows Severity : Category I - VMSKEY : V0005996 |
Nessus® Vulnerability Scanner
Date | Description |
---|---|
2005-04-12 | Name : A local user can elevate his privileges on the remote host. File : smb_nt_ms05-018.nasl - Type : ACT_GATHER_INFO |
Sources (Detail)
Alert History
Date | Informations |
---|---|
2024-11-28 23:22:19 |
|
2024-11-28 12:06:49 |
|
2021-05-04 12:02:48 |
|
2021-04-22 01:03:02 |
|
2020-05-23 00:16:22 |
|
2018-10-13 00:22:30 |
|
2017-10-11 09:23:28 |
|
2016-04-26 13:18:52 |
|
2014-02-17 10:30:18 |
|
2013-11-11 12:37:35 |
|
2013-05-11 11:21:52 |
|