CVE Database
/

CVE-2005-0044

Back to search

CVE-2005-0044

Published: Feb 8, 2005

Modified: Aug 7, 2024

PUBLISHED

Description

The OLE component in Windows 98, 2000, XP, and Server 2003, and Exchange Server 5.0 through 2003, does not properly validate the lengths of messages for certain OLE data, which allows remote attackers to execute arbitrary code, aka the "Input Validation Vulnerability."

VendorProductVersions

n/a

n/a

affected
n/a

References

oval:org.mitre.oval:def:2917
vdb-entry
signature
x_refsource_OVAL
win-ole-code-execution(19109)
vdb-entry
x_refsource_XF
oval:org.mitre.oval:def:1180
vdb-entry
signature
x_refsource_OVAL
VU#927889
third-party-advisory
x_refsource_CERT-VN
TA05-039A
third-party-advisory
x_refsource_CERT
oval:org.mitre.oval:def:3568
vdb-entry
signature
x_refsource_OVAL
MS05-012
vendor-advisory
x_refsource_MS
oval:org.mitre.oval:def:4499
vdb-entry
signature
x_refsource_OVAL

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now