Vulnerability Description
The POSIX component of Microsoft Windows NT and Windows 2000 allows local users to execute arbitrary code via certain parameters, possibly by modifying message length values and causing a buffer overflow.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Microsoft | Interix | 2.2 |
| Microsoft | Windows 2000 | - |
| Microsoft | Windows Nt | 4.0 |
Related Weaknesses (CWE)
References
- http://www.kb.cert.org/vuls/id/647436PatchThird Party AdvisoryUS Government Resource
- http://www.us-cert.gov/cas/techalerts/TA04-196A.htmlBroken LinkPatchThird Party Advisory
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2004/ms04-02PatchVendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/16590Third Party AdvisoryVDB Entry
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Broken Link
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Broken Link
- http://www.kb.cert.org/vuls/id/647436PatchThird Party AdvisoryUS Government Resource
- http://www.us-cert.gov/cas/techalerts/TA04-196A.htmlBroken LinkPatchThird Party Advisory
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2004/ms04-02PatchVendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/16590Third Party AdvisoryVDB Entry
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Broken Link
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Broken Link
- https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2004-US Government Resource
FAQ
What is CVE-2004-0210?
CVE-2004-0210 is a vulnerability with a CVSS score of 7.8 (HIGH). The POSIX component of Microsoft Windows NT and Windows 2000 allows local users to execute arbitrary code via certain parameters, possibly by modifying message length values and causing a buffer overf...
How severe is CVE-2004-0210?
CVE-2004-0210 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2004-0210?
Check the references section above for vendor advisories and patch information. Affected products include: Microsoft Interix, Microsoft Windows 2000, Microsoft Windows Nt.