Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2007-1211

EPSS 73.82% · P99
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2007-1211

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
Unspecified kernel GDI functions in Microsoft Windows 2000 SP4; XP SP2; and Server 2003 Gold, SP1, and SP2 allows user-assisted remote attackers to cause a denial of service (possibly persistent restart) via a crafted Windows Metafile (WMF) image that causes an invalid dereference of an offset in a kernel structure, a related issue to CVE-2005-4560.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Microsoft Windows GDI WMF远程拒绝服务漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Microsoft Windows是美国微软(Microsoft)公司发布的一系列操作系统。 Windows操作系统的某些内核GDI函数中存在拒绝服务漏洞,远程攻击者可能利用此漏洞导致用户系统崩溃。 在解析WMF文件时内核系统调用中的一个函数会试图通过引用内核结构中的偏移读取一个值。这个值是之前创建的,且之前的系统调用已经将其重置,当上述函数访问这个值时该值已不再包含有效的内存引用,这可能触发bug check,导致蓝屏死机。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Shenlong Deep Dive — AI Deep Analysis

10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2007-1211

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2007-1211

登录查看更多情报信息。

Same Patch Batch · n/a · 2007-04-04 · 8 CVEs total

CVE-2006-5586Microsoft Windows GDI无效窗口大小本地权限提升漏洞(M
CVE-2007-1212Microsoft Windows图形渲染引擎EMF文件处理本地权限提升漏洞
CVE-2007-1213Microsoft Windows GDI字体光栅化工具本地权限提升漏洞
CVE-2007-1215Microsoft Excel BIFF记录远程栈溢出漏洞
CVE-2007-1866dproxy-nexgen dns_decode_reverse_name函数栈缓冲溢出
CVE-2007-1867IrfanView光标和图标ANI格式处理远程栈溢出漏洞
CVE-2007-1868IBM Tivoli Provisioning Manager OS Deployment畸形请求内存破坏漏洞

IV. Related Vulnerabilities

V. Comments for CVE-2007-1211

No comments yet


Leave a comment