CVE-2010-2739: Buffer Overflow
Buffer overflow in the CreateDIBPalette function in win32k.sys in Microsoft Windows XP SP3, Server 2003 R2 Enterprise SP2, Vista Business SP1, Windows 7, and Server 2008 SP2 allows local users to cause a denial of service (crash) and possibly execute arbitrary code by performing a clipboard operation (GetClipboardData API function) with a crafted bitmap with a palette that contains a large number of colors.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2010-2739?
CVE-2010-2739 is classified as a critical vulnerability that can lead to denial of service and possibly arbitrary code execution.
How do I fix CVE-2010-2739?
To fix CVE-2010-2739, ensure that your Microsoft Windows operating system is updated with the latest security patches provided by Microsoft.
Which Windows versions are affected by CVE-2010-2739?
CVE-2010-2739 affects Windows XP SP3, Windows Vista SP1, Windows 7, Windows Server 2003 R2 SP2, and Windows Server 2008 SP2.
What type of attack does CVE-2010-2739 enable?
CVE-2010-2739 can be exploited to perform a denial of service attack, potentially allowing an attacker to execute arbitrary code.
Who can exploit CVE-2010-2739?
CVE-2010-2739 can be exploited by local users through crafted clipboard operations.