PT-2007-1569 · Microsoft · Windows Nt Message Compiler

Published

2007-01-05

·

Updated

2024-08-07

·

CVE-2007-0084

CVSS v2.0

6.6

Medium

VectorAV:L/AC:M/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Windows NT Message Compiler version 1.00.5239
Description A buffer overflow issue in the Windows NT Message Compiler allows local users to potentially gain privileges via a long MC-filename. However, this issue has been disputed by a reliable third party, stating that the compiler is not a privileged program and thus privilege boundaries cannot be crossed.
Recommendations For Windows NT Message Compiler version 1.00.5239, consider restricting access to the compiler to minimize potential risks until a definitive resolution is determined. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Related Identifiers

CVE-2007-0084

Affected Products

Windows Nt Message Compiler