PT-2005-2932 · Microsoft · Windows Xp+1
Jean-Baptiste Marchand
+1
·
Published
2005-08-10
·
Updated
2018-10-12
·
CVE-2005-1983
CVSS v2.0
10
High
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Microsoft Windows versions prior to Windows XP Service Pack 2
Description
A stack-based buffer overflow issue in the Plug and Play service allows remote attackers to execute arbitrary code via a crafted packet. Local users can also gain privileges by using a malicious application. This issue has been exploited by the Zotob worm.
Recommendations
For Microsoft Windows 2000 and Windows XP Service Pack 1, update to a newer service pack or version to resolve the issue.
As a temporary workaround, consider restricting access to the Plug and Play service to minimize the risk of exploitation.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Windows 2000
Windows Xp