Lucene search

K
cve[email protected]CVE-2009-1544
HistoryAug 12, 2009 - 5:30 p.m.

CVE-2009-1544

2009-08-1217:30:00
CWE-399
web.nvd.nist.gov
36
cve-2009-1544
double free vulnerability
workstation service
microsoft windows
rpc message
remote authenticated users
denial of service

9 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:S/C:C/I:C/A:C

6.5 Medium

AI Score

Confidence

High

0.807 High

EPSS

Percentile

98.3%

Double free vulnerability in the Workstation service in Microsoft Windows allows remote authenticated users to gain privileges via a crafted RPC message to a Windows XP SP2 or SP3 or Server 2003 SP2 system, or cause a denial of service via a crafted RPC message to a Vista Gold, SP1, or SP2 or Server 2008 Gold or SP2 system, aka β€œWorkstation Service Memory Corruption Vulnerability.”

Affected configurations

NVD
Node
microsoftwindows_2003_serverMatchsp2
OR
microsoftwindows_2003_serverMatchsp2itanium
OR
microsoftwindows_2003_serverMatchsp2x64
OR
microsoftwindows_server_2008itanium
OR
microsoftwindows_server_2008sp2x64
OR
microsoftwindows_server_2008Match--x32
OR
microsoftwindows_server_2008Match--x64
OR
microsoftwindows_server_2008Match-sp2itanium
OR
microsoftwindows_server_2008Match-sp2x86
OR
microsoftwindows_vistasp1
OR
microsoftwindows_vistasp2
OR
microsoftwindows_vistaMatch--x64
OR
microsoftwindows_xpsp2x64
OR
microsoftwindows_xpMatch-sp2
OR
microsoftwindows_xpMatch-sp3

9 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:S/C:C/I:C/A:C

6.5 Medium

AI Score

Confidence

High

0.807 High

EPSS

Percentile

98.3%