CVE-2005-1935
Last modified
CVE-2005-1935 is a vulnerability of currently unknown severity. Heap-based buffer overflow in the BERDecBitString function in Microsoft ASN.1 library (MSASN1.DLL) allows remote attackers to execute arbitrary code via nested constructed bit strings, which leads to a realloc of a non-null pointer and causes the function to overwrite previously freed memory, as demonstrated using a SPNEGO token with a constructed bit string during HTTP authentication, and a different vulnerability than CVE-2003-0818. NOTE: the researcher has claimed that MS:MS04-007 fixes this issue.. EPSS estimates a 26.63% chance of exploitation in the next 30 days.
Description
Heap-based buffer overflow in the BERDecBitString function in Microsoft ASN.1 library (MSASN1.DLL) allows remote attackers to execute arbitrary code via nested constructed bit strings, which leads to a realloc of a non-null pointer and causes the function to overwrite previously freed memory, as demonstrated using a SPNEGO token with a constructed bit string during HTTP authentication, and a different vulnerability than CVE-2003-0818. NOTE: the researcher has claimed that MS:MS04-007 fixes this issue.
Metrics
Affected Software
| Vendor | Product | Versions | Update |
|---|---|---|---|
| Microsoft | Windows 2000 | All versions | Sp2 |
| Microsoft | Windows 2003 Server | 64-bit | — |
| Microsoft | Windows 2003 Server | r2 | — |
| Microsoft | Windows Nt | 4.0 | Sp6 |
| Microsoft | Windows Xp | All versions | — |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2005-1935?
How severe is CVE-2005-1935?
How do I fix CVE-2005-1935?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2005
- CVE-2005-1929Multiple heap-based buffer overflows in (1) isaNVWRequest.dl…
- CVE-2005-1930Directory traversal vulnerability in the Crystal Report comp…
- CVE-2005-1931GoodTech SMTP Server 5.14 allows remote attackers to cause a…
- CVE-2005-1932Lpanel 1.59 and earlier, and other versions before 1.597, al…
- CVE-2005-1933Dashboard in Apple Mac OS X Tiger 10.4 allows attackers to e…
- CVE-2005-1934Gaim before 1.3.1 allows remote attackers to cause a denial …
- CVE-2005-1936Unknown vulnerability in the web server for the ESS/ Network…
- CVE-2005-1937A regression error in Firefox 1.0.3 and Mozilla 1.7.7 allows…
- CVE-2005-1938Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultI…
- CVE-2005-1939Directory traversal vulnerability in Ipswitch WhatsUp Small …
- CVE-2005-1941SilverCity before 0.9.5-r1 installs (1) cgi-styler-form.py, …7.8
- CVE-2005-1942Cisco switches that support 802.1x security allow remote att…
Are you affected by CVE-2005-1935?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
