CVE-2004-1305
Last modified
CVE-2004-1305 is a vulnerability of currently unknown severity. The Windows Animated Cursor (ANI) capability in Windows NT, Windows 2000 through SP4, Windows XP through SP1, and Windows 2003 allow remote attackers to cause a denial of service via (1) the frame number set to zero, which causes an invalid memory address to be used and leads to a kernel crash, or (2) the rate number set to zero, which leads to resource exhaustion and hang.. EPSS estimates a 62.36% chance of exploitation in the next 30 days.
Description
The Windows Animated Cursor (ANI) capability in Windows NT, Windows 2000 through SP4, Windows XP through SP1, and Windows 2003 allow remote attackers to cause a denial of service via (1) the frame number set to zero, which causes an invalid memory address to be used and leads to a kernel crash, or (2) the rate number set to zero, which leads to resource exhaustion and hang.
Metrics
Affected Software
| Vendor | Product | Versions | Update |
|---|---|---|---|
| Nortel | Ip Softphone 2050 | All versions | — |
| Nortel | Media Communication Server 5100 | 3.0 | — |
| Nortel | Media Communication Server 5200 | 3.0 | — |
| Nortel | Media Processing Server | All versions | — |
| Nortel | Periphonics | All versions | — |
| Nortel | Symposium Agent | All versions | — |
| Nortel | Symposium Network Control Center | All versions | — |
| Nortel | Symposium Tapi Service Provider | All versions | — |
| Nortel | Symposium Web Centre Portal | All versions | — |
| Nortel | Symposium Web Client | All versions | — |
| Nortel | Symposium Call Center Server | All versions | — |
| Nortel | Symposium Express Call Center | All versions | — |
| Microsoft | Windows 2000 | All versions | — |
| Microsoft | Windows 2003 Server | enterprise | — |
| Microsoft | Windows 2003 Server | enterprise_64-bit | — |
| Microsoft | Windows 2003 Server | r2 | — |
| Microsoft | Windows 2003 Server | standard | — |
| Microsoft | Windows 2003 Server | web | — |
| Microsoft | Windows 98 | All versions | Gold |
| Microsoft | Windows 98se | All versions | — |
| Microsoft | Windows Me | All versions | — |
| Microsoft | Windows Nt | 4.0 | — |
| Microsoft | Windows Xp | All versions | — |
References
- http://www.kb.cert.org/vuls/id/177584Patch, Third Party Advisory, US Government Resource
- http://www.kb.cert.org/vuls/id/697136Patch, Third Party Advisory, US Government Resource
- http://www.us-cert.gov/cas/techalerts/TA05-012A.htmlPatch, Third Party Advisory, US Government Resource
- http://www.xfocus.net/flashsky/icoExp/Vendor Advisory
- http://www.kb.cert.org/vuls/id/177584Patch, Third Party Advisory, US Government Resource
- http://www.kb.cert.org/vuls/id/697136Patch, Third Party Advisory, US Government Resource
- http://www.us-cert.gov/cas/techalerts/TA05-012A.htmlPatch, Third Party Advisory, US Government Resource
- http://www.xfocus.net/flashsky/icoExp/Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2004-1305?
How severe is CVE-2004-1305?
How do I fix CVE-2004-1305?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2004
- CVE-2004-1299Buffer overflow in the get_attr function in html.c for vilis…
- CVE-2004-1300Buffer overflow in the open_aiff_file function in demux_aiff…
- CVE-2004-1301Buffer overflow in the book_format_sql function in format.c …
- CVE-2004-1302The id3tag_sort function in id3tag.c for YAMT 0.5 allows rem…
- CVE-2004-1303Buffer overflow in the get function in get.c for Yanf 0.4 al…
- CVE-2004-1304Stack-based buffer overflow in the ELF header parsing code i…
- CVE-2004-1306Heap-based buffer overflow in winhlp32.exe in Windows NT, Wi…
- CVE-2004-1307Integer overflow in the TIFFFetchStripThing function in tif_…
- CVE-2004-1308Integer overflow in (1) tif_dirread.c and (2) tif_fax3.c for…
- CVE-2004-1309Heap-based buffer overflow in the demux_open_bmp function in…
- CVE-2004-1310Stack-based buffer overflow in the asf_mmst_streaming.c func…
- CVE-2004-1311Integer overflow in the real_setup_and_get_header function i…
Are you affected by CVE-2004-1305?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
