VDB
CVE-2005-0803
CVE-2005-0803
PUBLISHED
CVSS 5 MEDIUM
The GetEnhMetaFilePaletteEntries API in GDI32.DLL in Windows 2000 allows remote attackers to cause a denial of service (application crash) via a crafted Enhanced Metafile (EMF) file that causes invalid (1) end, (2) emreof, or (3) palent offsets to be used, aka "Enhanced Metafile Vulnerability."
EPSS 78.07% · 99.0th percentile
Risk Scores
CVSS 2.0
5
EPSS Score
78.07%
99.0th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| n/a | n/a | n/a |
| microsoft | windows_2000 |
Timeline
- Mar 20, 2005 CVE Published
- Feb 4, 2022 EPSS Score
- May 20, 2022 EPSS Score
- Jul 12, 2022 EPSS Score
- Oct 26, 2022 EPSS Score
- Dec 18, 2022 EPSS Score
- Mar 7, 2023 EPSS Score
- Apr 3, 2023 EPSS Score
- Jul 10, 2023 EPSS Score
- Jul 17, 2023 EPSS Score
- Oct 30, 2023 EPSS Score
- Dec 22, 2023 EPSS Score
References
- http://secunia.com/advisories/17223 advisory
- http://secunia.com/advisories/17461 advisory
- http://securitytracker.com/id?1015168 technical
- oval:org.mitre.oval:def:1152 vdb
- http://support.avaya.com/elmodocs2/security/ASA-2005-228.pdf url
- 20580 vdb
- win-2000-gdi32dll-dos(19727) vdb
- ADV-2005-2348 vdb
- VU#134756 third-party-advisory
- 14631 third-party-advisory
- 12834 vdb
- TA05-312A third-party-advisory
- oval:org.mitre.oval:def:1240 vdb
- 20050317 Windows 2000 GDI32.DLL GetEnhMetaFilePaletteEntries() API specially crafted EMF file DOS vulnerability mailing-list
- MS05-053 vendor-advisory
- oval:org.mitre.oval:def:1121 vdb
- oval:org.mitre.oval:def:1215 vdb
- oval:org.mitre.oval:def:671 vdb
- https://nvd.nist.gov/vuln/detail/CVE-2005-0803 advisory