CVE Database
/

CVE-2006-3445

Back to search

CVE-2006-3445

Published: Nov 14, 2006

Modified: Aug 7, 2024

PUBLISHED

Description

Integer overflow in the ReadWideString function in agentdpv.dll in Microsoft Agent on Microsoft Windows 2000 SP4, XP SP2, and Server 2003 up to SP1 allows remote attackers to execute arbitrary code via a large length value in an .ACF file, which results in a heap-based buffer overflow.

VendorProductVersions

n/a

n/a

affected
n/a

References

TA06-318A
third-party-advisory
x_refsource_CERT
ADV-2006-4506
vdb-entry
x_refsource_VUPEN
22878
third-party-advisory
x_refsource_SECUNIA
21034
vdb-entry
x_refsource_BID
VU#810772
third-party-advisory
x_refsource_CERT-VN
ms-agent-acf-bo(29945)
vdb-entry
x_refsource_XF
MS06-068
vendor-advisory
x_refsource_MS
oval:org.mitre.oval:def:154
vdb-entry
signature
x_refsource_OVAL
1017222
vdb-entry
x_refsource_SECTRACK

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now