First published: Fri Dec 31 2004(Updated: )
The local and remote desktop login screens in Microsoft Windows XP before SP2 and 2003 allow remote attackers to cause a denial of service (CPU and memory consumption) by repeatedly using the WinKey+"U" key combination, which causes multiple copies of Windows Utility Manager to be loaded more quickly than they can be closed when the copies detect that another instance is running.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Windows XP | =sp1 | |
Microsoft Windows Server 2003 | =r2 | |
Microsoft Windows XP | =gold | |
Microsoft Windows Server 2003 | =r2 | |
Microsoft Windows XP | =gold | |
Microsoft Windows XP | =sp1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2004-2527 is considered a moderate severity vulnerability due to its potential to cause a denial of service.
To address CVE-2004-2527, upgrade to Microsoft Windows XP Service Pack 2 or later.
CVE-2004-2527 affects Microsoft Windows XP prior to Service Pack 2 and Windows 2003 Server.
Yes, CVE-2004-2527 can be exploited remotely by attackers using the WinKey+"U" key combination.
CVE-2004-2527 facilitates a denial of service attack by causing high CPU and memory consumption.