PT-2007-1569 · Microsoft · Windows Nt Message Compiler
Published
2007-01-05
·
Updated
2024-08-07
·
CVE-2007-0084
CVSS v2.0
6.6
Medium
| Vector | AV:L/AC:M/Au:S/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Windows NT Message Compiler version 1.00.5239
Description
A buffer overflow issue in the Windows NT Message Compiler allows local users to potentially gain privileges via a long MC-filename. However, this issue has been disputed by a reliable third party, stating that the compiler is not a privileged program and thus privilege boundaries cannot be crossed.
Recommendations
For Windows NT Message Compiler version 1.00.5239, consider restricting access to the compiler to minimize potential risks until a definitive resolution is determined.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Windows Nt Message Compiler