Lucene search

K
cve[email protected]CVE-2005-1935
HistoryJun 13, 2005 - 4:00 a.m.

CVE-2005-1935

2005-06-1304:00:00
web.nvd.nist.gov
32
cve-2005-1935
msasn1.dll
remote code execution
buffer overflow
spnego
http authentication
ms:ms04-007 fix

7.5 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

7.9 High

AI Score

Confidence

Low

0.974 High

EPSS

Percentile

99.9%

Heap-based buffer overflow in the BERDecBitString function in Microsoft ASN.1 library (MSASN1.DLL) allows remote attackers to execute arbitrary code via nested constructed bit strings, which leads to a realloc of a non-null pointer and causes the function to overwrite previously freed memory, as demonstrated using a SPNEGO token with a constructed bit string during HTTP authentication, and a different vulnerability than CVE-2003-0818. NOTE: the researcher has claimed that MS:MS04-007 fixes this issue.

Affected configurations

NVD
Node
microsoftwindows_2000sp2
OR
microsoftwindows_2000sp3
OR
microsoftwindows_2000sp4fr
OR
microsoftwindows_2003_serverMatch64-bit
OR
microsoftwindows_2003_serverMatchr2
OR
microsoftwindows_ntMatch4.0sp6terminal_server
OR
microsoftwindows_ntMatch4.0sp6aserver
OR
microsoftwindows_ntMatch4.0sp6aworkstation
OR
microsoftwindows_xp64-bit
OR
microsoftwindows_xpgold
OR
microsoftwindows_xpsp164-bit
OR
microsoftwindows_xpsp1tablet_pc

7.5 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

7.9 High

AI Score

Confidence

Low

0.974 High

EPSS

Percentile

99.9%