The SfnINSTRING function in win32k.sys in the kernel in Microsoft Windows 2000, XP, and Server 2003 allows local users to cause a denial of service (system crash) via a 0x18d value in the second argument (aka the Msg argument) of a PostMessage function call for the DDEMLEvent window.
References
Configurations
Configuration 1 (hide)
|
History
07 Jul 2021, 16:08
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:o:microsoft:windows_2003_server:*:gold:x64-enterprise:*:*:*:*:* cpe:2.3:o:microsoft:windows_2003_server:*:sp2:datacenter:*:*:*:*:* cpe:2.3:o:microsoft:windows_2003_server:*:gold:datacenter:*:*:*:*:* cpe:2.3:o:microsoft:windows_2003_server:*:r2:compute_cluster:*:*:*:*:* cpe:2.3:o:microsoft:windows_2003_server:*:sp1:enterprise:*:*:*:*:* cpe:2.3:o:microsoft:windows_2003_server:*:gold:compute_cluster:*:*:*:*:* cpe:2.3:o:microsoft:windows_2003_server:*:r2:x64-standard:*:*:*:*:* cpe:2.3:o:microsoft:windows_2003_server:*:gold:storage:*:*:*:*:* cpe:2.3:o:microsoft:windows_2003_server:*:sp1:storage:*:*:*:*:* cpe:2.3:o:microsoft:windows_2003_server:*:sp2:standard:*:*:*:*:* cpe:2.3:o:microsoft:windows_2003_server:*:r2:standard:*:*:*:*:* cpe:2.3:o:microsoft:windows_2003_server:*:sp1:compute_cluster:*:*:*:*:* cpe:2.3:o:microsoft:windows_2003_server:*:r2:x64-enterprise:*:*:*:*:* cpe:2.3:o:microsoft:windows_2003_server:*:gold:enterprise:*:*:*:*:* cpe:2.3:o:microsoft:windows_2003_server:*:sp1:datacenter:*:*:*:*:* cpe:2.3:o:microsoft:windows_2003_server:*:sp2:storage:*:*:*:*:* cpe:2.3:o:microsoft:windows_2003_server:*:gold:standard:*:*:*:*:* cpe:2.3:o:microsoft:windows_2003_server:*:r2:storage:*:*:*:*:* cpe:2.3:o:microsoft:windows_2003_server:*:r2:x64-datacenter:*:*:*:*:* cpe:2.3:o:microsoft:windows_2003_server:*:sp1:standard:*:*:*:*:* cpe:2.3:o:microsoft:windows_2003_server:*:r2:datacenter:*:*:*:*:* cpe:2.3:o:microsoft:windows_2003_server:*:sp2:enterprise:*:*:*:*:* cpe:2.3:o:microsoft:windows_2003_server:*:sp2:compute_cluster:*:*:*:*:* cpe:2.3:o:microsoft:windows_2003_server:*:r2:enterprise:*:*:*:*:* |
cpe:2.3:o:microsoft:windows_server_2003:*:sp2:*:*:*:*:*:* cpe:2.3:o:microsoft:windows_server_2003:*:sp1:*:*:*:*:*:* cpe:2.3:o:microsoft:windows_server_2003:*:-:*:*:*:*:*:* |
Information
Published : 2010-05-06 12:47
Updated : 2024-02-04 17:54
NVD link : CVE-2010-1734
Mitre link : CVE-2010-1734
CVE.ORG link : CVE-2010-1734
JSON object : View
Products Affected
microsoft
- windows_xp
- windows_2003_server
- windows_2000
- windows_server_2003
CWE
CWE-20
Improper Input Validation