Security Advisory

CVE-2009-1923

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2009-08-12 17:00:00
Last updated 2024-08-07 05:27:54
Assigner microsoft
State PUBLISHED

Description

Heap-based buffer overflow in the Windows Internet Name Service (WINS) component for Microsoft Windows 2000 SP4 and Server 2003 SP2 allows remote attackers to execute arbitrary code via a crafted WINS replication packet that triggers an incorrect buffer-length calculation, aka "WINS Heap Overflow Vulnerability."