CVE-2007-0041
Last modified
CVE-2007-0041 is a vulnerability of currently unknown severity. The PE Loader service in Microsoft .NET Framework 1.0, 1.1, and 2.0 for Windows 2000, XP, Server 2003, and Vista allows remote attackers to execute arbitrary code via unspecified vectors involving an "unchecked buffer" and unvalidated message lengths, probably a buffer overflow.. EPSS estimates a 30.67% chance of exploitation in the next 30 days.
Description
The PE Loader service in Microsoft .NET Framework 1.0, 1.1, and 2.0 for Windows 2000, XP, Server 2003, and Vista allows remote attackers to execute arbitrary code via unspecified vectors involving an "unchecked buffer" and unvalidated message lengths, probably a buffer overflow.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Microsoft | .Net Framework | 1.0 |
| Microsoft | .Net Framework | 1.1 |
| Microsoft | .Net Framework | 2.0 |
References
- http://secunia.com/advisories/26003Vendor Advisory
- http://www.us-cert.gov/cas/techalerts/TA07-191A.htmlUS Government Resource
- http://www.vupen.com/english/advisories/2007/2482Vendor Advisory
- http://secunia.com/advisories/26003Vendor Advisory
- http://www.us-cert.gov/cas/techalerts/TA07-191A.htmlUS Government Resource
- http://www.vupen.com/english/advisories/2007/2482Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2007-0041?
How severe is CVE-2007-0041?
How do I fix CVE-2007-0041?
Are you affected by CVE-2007-0041?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
