PT-2007-3291 · Microsoft · Windows Explorer+1

Published

2007-04-11

·

Updated

2018-10-16

·

CVE-2007-1946

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Microsoft Windows XP SP1
Description The issue is related to an integer overflow in Windows Explorer. This could potentially allow remote attackers to cause a denial of service or possibly execute arbitrary code by using a crafted BMP image with a large width dimension.
Recommendations For Microsoft Windows XP SP1, update to a newer version to mitigate the risk. As a temporary workaround, consider avoiding the use of crafted BMP images in Windows Explorer until a patch is available. Restrict access to potentially malicious image files to minimize the risk of exploitation.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2007-1946

Affected Products

Windows Explorer
Windows Xp