First published: Wed Aug 10 2005(Updated: )
Stack-based buffer overflow in the Plug and Play (PnP) service for Microsoft Windows 2000 and Windows XP Service Pack 1 allows remote attackers to execute arbitrary code via a crafted packet, and local users to gain privileges via a malicious application, as exploited by the Zotob (aka Mytob) worm.
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Windows 2000 | ||
Microsoft Windows XP | =sp1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2005-1983 has a high severity rating due to its potential for remote code execution and privilege escalation.
Fixing CVE-2005-1983 involves applying the latest security patches and updates provided by Microsoft for Windows 2000 and Windows XP.
CVE-2005-1983 affects users running Microsoft Windows 2000 and Windows XP Service Pack 1.
CVE-2005-1983 can be exploited via crafted packets that trigger a stack-based buffer overflow.
Yes, local users can exploit CVE-2005-1983 to gain elevated privileges through malicious applications.