vendor:
Windows 2003
by:
webDEViL
9,3
CVSS
HIGH
MS Windows 2003 (EOT File) BSOD Crash Exploit
119
CWE
Product Name: Windows 2003
Affected Version From: Windows 2003
Affected Version To: Windows 2003
Patch Exists: YES
Related CWE: CVE-2009-2514
CPE: o:microsoft:windows_2003
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows
2009
MS Windows 2003 (EOT File) BSOD Crash Exploit
This exploit triggers a Blue Screen of Death (BSOD) on Windows 2003 systems when a specially crafted EOT font file is opened. The vulnerability is caused due to a boundary error within the processing of EOT font files. This can be exploited to cause a stack-based buffer overflow via a specially crafted EOT font file.
Mitigation:
Microsoft has released a patch to address this vulnerability.