PT-2005-2932 · Microsoft · Windows Xp+1

Jean-Baptiste Marchand

+1

·

Published

2005-08-10

·

Updated

2018-10-12

·

CVE-2005-1983

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Microsoft Windows versions prior to Windows XP Service Pack 2
Description A stack-based buffer overflow issue in the Plug and Play service allows remote attackers to execute arbitrary code via a crafted packet. Local users can also gain privileges by using a malicious application. This issue has been exploited by the Zotob worm.
Recommendations For Microsoft Windows 2000 and Windows XP Service Pack 1, update to a newer service pack or version to resolve the issue. As a temporary workaround, consider restricting access to the Plug and Play service to minimize the risk of exploitation.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2005-1983

Affected Products

Windows 2000
Windows Xp