First published: Tue Oct 11 2005(Updated: )
COM+ in Microsoft Windows does not properly "create and use memory structures," which allows local users or remote attackers to execute arbitrary code.
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Windows 2003 Server | =64-bit | |
Microsoft Windows 2003 Server | =itanium | |
Microsoft Windows 2003 Server | =sp1 | |
Microsoft Windows XP | ||
Microsoft Windows XP | =sp1 | |
Microsoft Windows 2003 Server | =sp1 | |
Microsoft Windows 2003 Server | =r2 | |
Microsoft Windows 2000 | =sp4 | |
Microsoft Windows XP | =sp2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2005-1978 is considered critical due to the potential for remote code execution.
The vulnerability can be mitigated by applying the latest security patches provided by Microsoft for the affected versions of Windows.
CVE-2005-1978 affects users of Microsoft Windows 2000, Windows XP, and Windows Server 2003 across various configurations.
Exploitation of CVE-2005-1978 could allow attackers to execute arbitrary code on the affected systems.
CVE-2005-1978 can be exploited by both local users and remote attackers.