CVE-2003-0659: Buffer Overflow
Buffer overflow in a function in User32.dll on Windows NT through Server 2003 allows local users to execute arbitrary code via long (1) LBDIR messages to ListBox or (2) CBDIR messages to ComboBox controls in a privileged application.
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2003-0659?
CVE-2003-0659 is classified as a critical vulnerability due to its potential to allow local users to execute arbitrary code.
How do I fix CVE-2003-0659?
To mitigate the vulnerability identified in CVE-2003-0659, apply the latest security patches provided by Microsoft for affected Windows versions.
What systems are affected by CVE-2003-0659?
CVE-2003-0659 affects multiple Windows systems including Windows NT 4.0, Windows XP, and Windows Server 2003.
What type of attack is facilitated by CVE-2003-0659?
CVE-2003-0659 allows local users to exploit a buffer overflow, leading to the execution of arbitrary code.
Is user interaction required to exploit CVE-2003-0659?
Yes, exploiting CVE-2003-0659 typically requires local user interaction to trigger the vulnerable controls.