CVE-2005-2123: Buffer Overflow
Multiple integer overflows in the Graphics Rendering Engine (GDI32.DLL) in Windows 2000 SP4, XP SP1 and SP2, and Server 2003 SP1 allow remote attackers to execute arbitrary code via crafted Windows Metafile (WMF) and Enhanced Metafile (EMF) format images that lead to heap-based buffer overflows, as demonstrated using MRBP16::bCheckRecord.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2005-2123?
CVE-2005-2123 has a high severity rating due to its potential for remote code execution.
How do I fix CVE-2005-2123?
To fix CVE-2005-2123, install the latest security updates provided by Microsoft for affected Windows versions.
What systems are affected by CVE-2005-2123?
CVE-2005-2123 affects Microsoft Windows 2000 SP4, XP SP1 and SP2, and Server 2003 SP1.
What type of vulnerability is CVE-2005-2123?
CVE-2005-2123 is an integer overflow vulnerability in the Graphics Rendering Engine.
Can CVE-2005-2123 be exploited remotely?
Yes, attackers can exploit CVE-2005-2123 remotely through specially crafted image files.