Back to search
CVE-2005-1983
Published: Aug 10, 2005
Modified: Aug 7, 2024
PUBLISHED
Description
Stack-based buffer overflow in the Plug and Play (PnP) service for Microsoft Windows 2000 and Windows XP Service Pack 1 allows remote attackers to execute arbitrary code via a crafted packet, and local users to gain privileges via a malicious application, as exploited by the Zotob (aka Mytob) worm.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
ADV-2005-1354
vdb-entry
x_refsource_VUPEN
oval:org.mitre.oval:def:497
vdb-entry
signature
x_refsource_OVAL
http://www.hsc.fr/ressources/presentations/null_sessions/
x_refsource_MISC
18605
vdb-entry
x_refsource_OSVDB
http://www.frsirt.com/english/alerts/20050814.ZotobA.php
x_refsource_MISC
20050811 Windows 2000 universal exploit for MS05-039
mailing-list
x_refsource_FULLDISC
VU#998653
third-party-advisory
x_refsource_CERT-VN
14513
vdb-entry
x_refsource_BID
oval:org.mitre.oval:def:267
vdb-entry
signature
x_refsource_OVAL
P-266
third-party-advisory
government-resource
x_refsource_CIAC
1014640
vdb-entry
x_refsource_SECTRACK
win-plugandplay-bo(21602)
vdb-entry
x_refsource_XF
TA05-221A
third-party-advisory
x_refsource_CERT
16372
third-party-advisory
x_refsource_SECUNIA
20050809 Windows Plug and Play Remote Compromise
third-party-advisory
x_refsource_ISS
oval:org.mitre.oval:def:100073
vdb-entry
signature
x_refsource_OVAL
MS05-039
vendor-advisory
x_refsource_MS
oval:org.mitre.oval:def:160
vdb-entry
signature
x_refsource_OVAL
oval:org.mitre.oval:def:474
vdb-entry
signature
x_refsource_OVAL
oval:org.mitre.oval:def:783
vdb-entry
signature
x_refsource_OVAL
http://www.securiteam.com/windowsntfocus/5YP0E00GKW.html
x_refsource_MISC
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now