Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2004-0200

EPSS 76.69% · P99
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2004-0200

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
Buffer overflow in the JPEG (JPG) parsing engine in the Microsoft Graphic Device Interface Plus (GDI+) component, GDIPlus.dll, allows remote attackers to execute arbitrary code via a JPEG image with a small JPEG COM field length that is normalized to a large integer length before a memory copy operation.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Microsoft Windows GDI+ JPG解析组件缓冲区溢出漏洞(MS04-028)
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Microsoft Windows图形设备接口(GDI+)是为用户提供在屏幕和打印机上显示信息的API。GDI+也能处理JPEG图象文件。 GDI+ (Gdiplus.dll)在处理畸形JPEG文件时存在缓冲区溢出,远程攻击者可以利用这个漏洞构建恶意JPEG文件,以用户进程权限在系统上执行任意指令。 Microsoft报告Windows XP、Windows XP Service Pack 1和Windows Server 2003操作系统下的组件存在此问题,由于兼容性问题,部分第三方应用程序安装了这些受
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Shenlong Deep Dive — AI Deep Analysis

10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2004-0200

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2004-0200

登录查看更多情报信息。

Same Patch Batch · n/a · 2004-09-17 · 13 CVEs total

CVE-2004-0558CUPS UDP数据包远程服务拒绝漏洞
CVE-2004-0573Microsoft WordPerfect转换器远程缓冲区溢出漏洞(MS04-027)
CVE-2004-0747Apache 安全漏洞
CVE-2004-0753GDK-Pixbuf 设计错误漏洞
CVE-2004-0782GDK-Pixbuf 安全漏洞
CVE-2004-0783gdk-pixbuf 缓冲区错误漏洞
CVE-2004-0786Apache 安全漏洞
CVE-2004-0788GDK-Pixbuf 输入验证错误漏洞
CVE-2004-0799Ipswitch WhatsUp Gold远程拒绝服务漏洞
CVE-2004-0809Apache 安全漏洞
CVE-2004-0817IMLib/IMLib2多个BMP图像解码缓冲区溢出漏洞
CVE-2004-0849GNU Radius SNMP字符串长度整数溢出拒绝服务漏洞

IV. Related Vulnerabilities

V. Comments for CVE-2004-0200

No comments yet


Leave a comment