Vulnerability   
Search   
    Search 324607 CVE descriptions
and 146377 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2003-0818
Description:Multiple integer overflows in Microsoft ASN.1 library (MSASN1.DLL), as used in LSASS.EXE, CRYPT32.DLL, and other Microsoft executables and libraries on Windows NT 4.0, 2000, and XP, allow remote attackers to execute arbitrary code via ASN.1 BER encodings with (1) very large length fields that cause arbitrary heap data to be overwritten, or (2) modified bit strings.
Test IDs: 1.3.6.1.4.1.25623.1.0.12054   1.3.6.1.4.1.25623.1.0.12052   1.3.6.1.4.1.25623.1.0.12065  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2003-0818
Bugtraq: 20040210 EEYE: Microsoft ASN.1 Library Bit String Heap Corruption (Google Search)
http://marc.info/?l=bugtraq&m=107643892224825&w=2
Bugtraq: 20040210 EEYE: Microsoft ASN.1 Library Length Overflow Heap Corruption (Google Search)
http://marc.info/?l=bugtraq&m=107643836125615&w=2
Cert/CC Advisory: TA04-041A
http://www.us-cert.gov/cas/techalerts/TA04-041A.html
CERT/CC vulnerability note: VU#216324
http://www.kb.cert.org/vuls/id/216324
CERT/CC vulnerability note: VU#583108
http://www.kb.cert.org/vuls/id/583108
Microsoft Security Bulletin: MS04-007
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2004/ms04-007
http://marc.info/?l=ntbugtraq&m=107650972723080&w=2
http://marc.info/?l=ntbugtraq&m=107650972617367&w=2
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A653
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A796
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A797
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A799




© 1998-2025 E-Soft Inc. All rights reserved.