CVE-2004-0575: Integer Overflow
Integer overflow in DUNZIP32.DLL for Microsoft Windows XP, Windows XP 64-bit Edition, Windows Server 2003, and Windows Server 2003 64-bit Edition allows remote attackers to execute arbitrary code via compressed (zipped) folders that involve an "unchecked buffer" and improper length validation.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2004-0575?
CVE-2004-0575 is considered a critical vulnerability due to the potential for remote code execution.
How do I fix CVE-2004-0575?
To fix CVE-2004-0575, ensure that your system is updated with the latest security patches from Microsoft.
Which systems are affected by CVE-2004-0575?
CVE-2004-0575 affects Microsoft Windows XP, Windows XP 64-bit Edition, Windows Server 2003, and Windows Server 2003 64-bit Edition.
What kind of attack can exploit CVE-2004-0575?
CVE-2004-0575 can be exploited by remote attackers sending specially crafted compressed (zipped) folders.
What is the nature of the vulnerability in CVE-2004-0575?
The nature of the vulnerability in CVE-2004-0575 is an integer overflow in DUNZIP32.DLL, which leads to improper length validation.